Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-27025

Опубликовано: 18 нояб. 2021
Источник: debian

Описание

A flaw was discovered in Puppet Agent where the agent may silently ignore Augeas settings or may be vulnerable to a Denial of Service condition prior to the first 'pluginsync'.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
puppet-agentnot-affectedpackage
puppetremovedpackage
puppetignoredbullseyepackage
puppetignoredbusterpackage
puppetignoredstretchpackage

Примечания

  • https://puppet.com/security/cve/cve-2021-27025

  • https://github.com/puppetlabs/puppet/commit/da8b73edca174309a9bef5f62cd276933fe733e8 (6.25.1)

  • Limited impact, needs a malformed custom type provider

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 4 года назад

A flaw was discovered in Puppet Agent where the agent may silently ignore Augeas settings or may be vulnerable to a Denial of Service condition prior to the first 'pluginsync'.

CVSS3: 6.3
redhat
почти 4 года назад

A flaw was discovered in Puppet Agent where the agent may silently ignore Augeas settings or may be vulnerable to a Denial of Service condition prior to the first 'pluginsync'.

CVSS3: 6.5
nvd
почти 4 года назад

A flaw was discovered in Puppet Agent where the agent may silently ignore Augeas settings or may be vulnerable to a Denial of Service condition prior to the first 'pluginsync'.

CVSS3: 6.5
github
почти 4 года назад

Silent Configuration Failure in Puppet Agent

CVSS3: 6.5
fstec
почти 4 года назад

Уязвимость приложения для запуска Puppet Agent, связанная с ошибками управления ресурсами, позволяющая нарушителю вызвать отказ в обслуживании