Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2011-3869
Puppet 2.7.x before 2.7.5, 2.6.x before 2.6.11, and 0.25.x allows local users to overwrite arbitrary files via a symlink attack on the .k5login file.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.0
EPSS Ranking
7.5%
CVSS Severity
CVSS v2 Score
6.3
References
http://groups.google.com/group/puppet-announce/browse_thread/thread/91e3b46d2328a1cb
http://lists.fedoraproject.org/pipermail/package-announce/2011-October/068053.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-October/068061.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-October/068093.html
http://secunia.com/advisories/46458
http://www.debian.org/security/2011/dsa-2314
http://www.ubuntu.com/usn/USN-1223-1
http://www.ubuntu.com/usn/USN-1223-2
https://puppet.com/security/cve/cve-2011-3869
http://groups.google.com/group/puppet-announce/browse_thread/thread/91e3b46d2328a1cb
http://lists.fedoraproject.org/pipermail/package-announce/2011-October/068053.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-October/068061.html
http://lists.fedoraproject.org/pipermail/package-announce/2011-October/068093.html
http://secunia.com/advisories/46458
http://www.debian.org/security/2011/dsa-2314
http://www.ubuntu.com/usn/USN-1223-1
http://www.ubuntu.com/usn/USN-1223-2
https://puppet.com/security/cve/cve-2011-3869
Products affected by CVE-2011-3869
Puppet
»
Puppet
»
Version:
0.25.0
cpe:2.3:a:puppet:puppet:0.25.0
Puppet
»
Puppet
»
Version:
0.25.1
cpe:2.3:a:puppet:puppet:0.25.1
Puppet
»
Puppet
»
Version:
0.25.2
cpe:2.3:a:puppet:puppet:0.25.2
Puppet
»
Puppet
»
Version:
0.25.3
cpe:2.3:a:puppet:puppet:0.25.3
Puppet
»
Puppet
»
Version:
0.25.4
cpe:2.3:a:puppet:puppet:0.25.4
Puppet
»
Puppet
»
Version:
0.25.5
cpe:2.3:a:puppet:puppet:0.25.5
Puppet
»
Puppet
»
Version:
0.25.6
cpe:2.3:a:puppet:puppet:0.25.6
Puppet
»
Puppet
»
Version:
2.6.0
cpe:2.3:a:puppet:puppet:2.6.0
Puppet
»
Puppet
»
Version:
2.6.1
cpe:2.3:a:puppet:puppet:2.6.1
Puppet
»
Puppet
»
Version:
2.6.10
cpe:2.3:a:puppet:puppet:2.6.10
Puppet
»
Puppet
»
Version:
2.6.2
cpe:2.3:a:puppet:puppet:2.6.2
Puppet
»
Puppet
»
Version:
2.6.3
cpe:2.3:a:puppet:puppet:2.6.3
Puppet
»
Puppet
»
Version:
2.6.4
cpe:2.3:a:puppet:puppet:2.6.4
Puppet
»
Puppet
»
Version:
2.6.5
cpe:2.3:a:puppet:puppet:2.6.5
Puppet
»
Puppet
»
Version:
2.6.6
cpe:2.3:a:puppet:puppet:2.6.6
Puppet
»
Puppet
»
Version:
2.6.7
cpe:2.3:a:puppet:puppet:2.6.7
Puppet
»
Puppet
»
Version:
2.6.8
cpe:2.3:a:puppet:puppet:2.6.8
Puppet
»
Puppet
»
Version:
2.6.9
cpe:2.3:a:puppet:puppet:2.6.9
Puppet
»
Puppet
»
Version:
2.7.2
cpe:2.3:a:puppet:puppet:2.7.2
Puppet
»
Puppet
»
Version:
2.7.3
cpe:2.3:a:puppet:puppet:2.7.3
Puppet
»
Puppet
»
Version:
2.7.4
cpe:2.3:a:puppet:puppet:2.7.4
Puppetlabs
»
Puppet
»
Version:
2.7.0
cpe:2.3:a:puppetlabs:puppet:2.7.0
Puppetlabs
»
Puppet
»
Version:
2.7.1
cpe:2.3:a:puppetlabs:puppet:2.7.1
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved