Puppet 2.6.0 through 2.6.3 does not properly restrict access to node resources, which allows remote authenticated Puppet nodes to read or modify the resources of other nodes via unspecified vectors.
Advisories
Source ID Title
EUVD EUVD EUVD-2022-3428 Puppet 2.6.0 through 2.6.3 does not properly restrict access to node resources, which allows remote authenticated Puppet nodes to read or modify the resources of other nodes via unspecified vectors.
Github GHSA Github GHSA GHSA-9pvx-fwwh-w289 Puppet does not properly restrict access to node resources
Ubuntu USN Ubuntu USN USN-1365-1 Puppet vulnerability
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-06T21:58:24.966Z

Reserved: 2011-01-20T00:00:00

Link: CVE-2011-0528

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-02-17T16:55:04.787

Modified: 2025-04-11T00:51:21.963

Link: CVE-2011-0528

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.