pkg:Debian/puppet
共 53 筆 CVECRITICAL1HIGH4MEDIUM5
✅ 檢查你的版本
所有已知漏洞
- CRITICAL9.8CVE-2016-5713Versions of Puppet Agent prior to 1.6.0 included a version of the Puppet Execution Protocol (PXP) agent that passed environment variables t…from 0, < 4.7.0-1
- from 0, < 2.7.23-1~deb7u4
- from 0, < 4.8.2-5
- from 0, < 3.7.2-4+deb8u1
- HIGH7.2CVE-2016-5714Puppet Enterprise 2015.3.3 and 2016.x before 2016.4.0, and Puppet Agent 1.3.6 through 1.7.0 allow remote attackers to bypass a host whiteli…from 0, < 4.8.0-1
- from 0
- from 0
- from 0
- MEDIUM6.5CVE-2014-3250The default vhost configuration file in Puppet before 3.6.2 does not include the SSLCARevocationCheck directive, which might allow remote a…from 0, < 3.7.0-1
- from 0, < 5.4.0-1
- from 0, < 2.6.2-3
- from 0, < 2.7.3-3
- from 0, < 2.7.3-3
- from 0, < 2.7.3-3
- from 0, < 2.7.13-1
- from 0, < 2.7.13-1
- from 0, < 2.7.13-1
- from 0, < 2.6.2-5+squeeze5
- from 0, < 2.6.2-5+squeeze4
- from 0, < 2.7.11-1
- from 0, < 0.25.4-2
- from 0, < 2.7.18-1
- from 0, < 2.7.13-1
- from 0, < 3.2.4-1
- from 0, < 2.6.2-5+squeeze8
- from 0, < 2.7.23-1~deb7u1
- —CVE-2012-3867Pupper does not properly restrict characters in Common Name field of Certificate Signing Requestfrom 0, < 2.7.18-1
- from 0, < 2.7.18-1
- from 0, < 3.2.2-1
- from 0, < 2.7.18-1
- from 0, < 2.7.18-3
- —CVE-2014-3248facter, hiera, mcollective-client, and puppet affected by untrusted search path vulnerabilityfrom 0, < 3.7.0-1
- from 0, < 2.6.2-5+squeeze9
- from 0, < 3.4.1-1
- —CVE-2013-4956Puppet Module Tool (PMT), as used in Puppet 2.7.x before 2.7.23 and 3.2.x before 3.2.4, and Puppet Enterprise 2.8.x before 2.8.3 and 3.0.x…from 0, < 3.2.4-1
- from 0, < 2.6.4-2
- from 0, < 2.6.2-5+squeeze10
- —CVE-2013-2275The default configuration for puppet masters 0.25.0 and later in Puppet before 2.6.18, 2.7.x before 2.7.21, and 3.1.x before 3.1.1, and Pup…from 0, < 2.7.18-3
- —CVE-2013-2274Puppet 2.6.x before 2.6.18 and Puppet Enterprise 1.2.x before 1.2.7 allows remote authenticated users to execute arbitrary code on the pupp…from 0, < 2.7-1
- —CVE-2013-1654Puppet 2.7.x before 2.7.21 and 3.1.x before 3.1.1, and Puppet Enterprise 2.7.x before 2.7.2, does not properly negotiate the SSL protocol b…from 0, < 2.7.18-3
- —CVE-2013-1653Puppet before 2.6.18, 2.7.x before 2.7.21, and 3.1.x before 3.1.1, and Puppet Enterprise before 1.2.7 and 2.7.x before 2.7.2, when listenin…from 0, < 2.7.18-3
- —CVE-2013-1652Puppet before 2.6.18, 2.7.x before 2.7.21, and 3.1.x before 3.1.1, and Puppet Enterprise before 1.2.7 and 2.7.x before 2.7.2 allows remote…from 0, < 2.7.18-3
- from 0, < 2.6.2-5+squeeze7
- from 0, < 2.7.18-3
- from 0, < 2.7.18-1
- from 0, < 2.6.2-5+squeeze6
- —CVE-2012-1986Puppet 2.6.x before 2.6.15 and 2.7.x before 2.7.13, and Puppet Enterprise (PE) Users 1.0, 1.1, 1.2.x, 2.0.x, and 2.5.x before 2.5.1 allows…from 0, < 2.7.13-1
- —CVE-2012-1054Puppet 2.6.x before 2.6.14 and 2.7.x before 2.7.11, and Puppet Enterprise (PE) Users 1.0, 1.1, 1.2.x, 2.0.x before 2.0.3, when managing a u…from 0, < 2.7.11-1
- from 0, < 2.7.6-1
- from 0, < 0.24.5-3+lenny2
- from 0, < 2.7.3-2
- from 0, < 2.6.2-5+squeeze1
- —CVE-2009-3564puppetmasterd in puppet 0.24.6 does not reset supplementary groups when it switches to a different user, which might allow local users to a…from 0, < 0.25.1-3