4
CVE-2013-2275
- EPSS 2.91%
- Veröffentlicht 20.03.2013 16:55:01
- Zuletzt bearbeitet 29.04.2026 01:13:23
- Erkennungen
The default configuration for puppet masters 0.25.0 and later in Puppet before 2.6.18, 2.7.x before 2.7.21, and 3.1.x before 3.1.1, and Puppet Enterprise before 1.2.7 and 2.7.x before 2.7.2, allows remote authenticated nodes to submit reports for other nodes via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Puppetlabs ≫ Puppet Version <= 2.6.17
Puppetlabs ≫ Puppet Version 2.7.0
Puppetlabs ≫ Puppet Version 2.7.1
Puppetlabs ≫ Puppet Version 2.7.19
Puppetlabs ≫ Puppet Version 2.7.20
Puppetlabs ≫ Puppet Version 2.7.20 Update rc1
Puppet ≫ Puppet Enterprise Version 3.1.0
Puppetlabs ≫ Puppet SwEdition enterprise Version <= 1.2.6
Puppet ≫ Puppet Enterprise Version 2.7.0
Puppet ≫ Puppet Enterprise Version 2.7.1
Canonical ≫ Ubuntu Linux Version 11.10
Canonical ≫ Ubuntu Linux Version 12.04 SwEdition lts
Canonical ≫ Ubuntu Linux Version 12.10
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 2.91% | 0.852 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4 | 8 | 2.9 |
AV:N/AC:L/Au:S/C:N/I:P/A:N
|
http://lists.opensuse.org/opensuse-security-announce/2013-04/msg00004.html
http://lists.opensuse.org/opensuse-updates/2013-04/msg00056.html
http://rhn.redhat.com/errata/RHSA-2013-0710.html
http://secunia.com/advisories/52596
http://ubuntu.com/usn/usn-1759-1
http://www.debian.org/security/2013/dsa-2643
http://www.securityfocus.com/bid/58449
https://puppetlabs.com/security/cve/cve-2013-2275/