SUSE-RU-2015:0696-1
Dashboard / Vulnerabilities / SUSE-RU-2015:0696-1
SUSE-RU-2015:0696-1
Summary: Security update for puppet
Details: Puppet was updated to fix the following security issues: * Unsafe use of temporary files. (CVE-2013-4969) * Arbitrary code execution with required social engineering. (CVE-2014-3248, CVE-2014-3250) Security Issues references: * CVE-2014-3248 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3248> * CVE-2013-4969 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-4969> * CVE-2014-3250 <http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-3250>
References: https://www.suse.com/support/update/announcement//suse-ru-20150696-1/, https://bugzilla.suse.com/825878, https://bugzilla.suse.com/835122, https://bugzilla.suse.com/835848, https://bugzilla.suse.com/835891, https://bugzilla.suse.com/853982, https://bugzilla.suse.com/856843, https://bugzilla.suse.com/864082, https://bugzilla.suse.com/879913, https://bugzilla.suse.com/913078, https://www.suse.com/security/cve/CVE-2013-3567, https://www.suse.com/security/cve/CVE-2013-4761, https://www.suse.com/security/cve/CVE-2013-4969, https://www.suse.com/security/cve/CVE-2014-3248, https://www.suse.com/security/cve/CVE-2014-3250
