ZeroHour

CVE-2018-11751

CVSS 3.1
5.4 medium
EPSS
<1%p47
Published
()
Modified
Description

Previous versions of Puppet Agent didn't verify the peer in the SSL connection prior to downloading the CRL. This issue is resolved in Puppet Agent 6.4.0.

Vendors
puppet
Products
puppet server
Weakness
CWE-295
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L

In the news

No ingested article mentions this CVE yet.