Описание
Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remote execution bug when a specially crafted string was passed into the facter_task or puppet_conf tasks. This vulnerability only affects tasks in the affected modules, if you are not using puppet tasks you are not affected by this vulnerability.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat OpenStack Platform 10 (Newton) | puppet-apache | Not affected | ||
| Red Hat OpenStack Platform 10 (Newton) | puppet-mysql | Not affected | ||
| Red Hat OpenStack Platform 11 (Ocata) | puppet-apache | Not affected | ||
| Red Hat OpenStack Platform 11 (Ocata) | puppet-mysql | Not affected | ||
| Red Hat OpenStack Platform 12 (Pike) | puppet-apache | Not affected | ||
| Red Hat OpenStack Platform 12 (Pike) | puppet-mysql | Not affected | ||
| Red Hat OpenStack Platform 13 (Queens) | puppet-apache | Affected | ||
| Red Hat OpenStack Platform 13 (Queens) | puppet-mysql | Affected |
Показывать по
Дополнительная информация
Статус:
9 Critical
CVSS3
Связанные уязвимости
Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remote execution bug when a specially crafted string was passed into the facter_task or puppet_conf tasks. This vulnerability only affects tasks in the affected modules, if you are not using puppet tasks you are not affected by this vulnerability.
Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remote execution bug when a specially crafted string was passed into the facter_task or puppet_conf tasks. This vulnerability only affects tasks in the affected modules, if you are not using puppet tasks you are not affected by this vulnerability.
Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remot ...
Puppet Enterprise 2017.3.x prior to 2017.3.3 are vulnerable to a remote execution bug when a specially crafted string was passed into the facter_task or puppet_conf tasks. This vulnerability only affects tasks in the affected modules, if you are not using puppet tasks you are not affected by this vulnerability.
9 Critical
CVSS3