Revision Date: | 2014-06-23 | Version: | 6 |
Title: | DSA-2831-1 puppet - insecure temporary files |
Description: | An unsafe use of temporary files was discovered in Puppet, a tool for centralized configuration management. An attacker can exploit this vulnerability and overwrite an arbitrary file in the system. |
Family: | unix | Class: | patch |
Status: | ACCEPTED | Reference(s): | CVE-2013-4969 DSA-2831-1
|
Platform(s): | Debian GNU/kFreeBSD 6.0 Debian GNU/kFreeBSD 7 Debian GNU/Linux 6.0 Debian GNU/Linux 7
| Product(s): | puppet
|
Definition Synopsis |
Debian 6.0 release section Debian 6.0 is installed
AND GNU/Linux or GNU/kFreeBSD kernel
Debian GNU/Linux is installed
OR Debian GNU/kFreeBSD is installed
AND puppet DPKG is earlier than 0:2.6.2-5+squeeze9
Debian 7.x release section
Debian 7 is installed
AND GNU/Linux or GNU/kFreeBSD kernel
Debian GNU/Linux is installed
OR Debian GNU/kFreeBSD is installed
AND puppet DPKG is earlier than 0:2.7.23-1~deb7u2
|