CVE-2018-11751

Previous versions of Puppet Agent didn't verify the peer in the SSL connection prior to downloading the CRL. This issue is resolved in Puppet Agent 6.4.0.
References
Link Resource
https://puppet.com/security/cve/CVE-2018-11751 Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:puppet:puppet_server:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2019-12-16 22:15

Updated : 2024-02-04 20:39


NVD link : CVE-2018-11751

Mitre link : CVE-2018-11751

CVE.ORG link : CVE-2018-11751


JSON object : View

Products Affected

puppet

  • puppet_server
CWE
CWE-295

Improper Certificate Validation