VDB
Sign up
LOW

GHSA-c5qq-g673-5p49

Puppet allows local users to overwrite arbitrary files via a symlink attack

Quick fix

GHSA-c5qq-g673-5p49 — puppet: upgrade to the fixed version with the command below.

bundle update puppet

Details

`telnet.rb` in Puppet 2.7.x before 2.7.13 and Puppet Enterprise (PE) 1.2.x, 2.0.x, and 2.5.x before 2.5.1 allows local users to overwrite arbitrary files via a symlink attack on the NET::Telnet connection log (`/tmp/out.log`).

Are you affected?

Enter the version of the package you're using.

Affected packages

RubyGems/puppet
Introduced in: 2.7.1Fixed in: 2.7.13
Fixbundle update puppet

References