CVE Database
/

CVE-2013-1655

Back to search

CVE-2013-1655

Published: Mar 20, 2013

Modified: Aug 6, 2024

PUBLISHED

Description

Puppet 2.7.x before 2.7.21 and 3.1.x before 3.1.1, when running Ruby 1.9.3 or later, allows remote attackers to execute arbitrary code via vectors related to "serialized attributes."

VendorProductVersions

n/a

n/a

affected
n/a

References

58442
vdb-entry
x_refsource_BID
SUSE-SU-2013:0618
vendor-advisory
x_refsource_SUSE
DSA-2643
vendor-advisory
x_refsource_DEBIAN
52596
third-party-advisory
x_refsource_SECUNIA
USN-1759-1
vendor-advisory
x_refsource_UBUNTU
openSUSE-SU-2013:0641
vendor-advisory
x_refsource_SUSE

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now