CVE-2012-1053
puppet - several
EPSS 0.04%
Description
The change_user method in the SUIDManager (lib/puppet/util/suidmanager.rb) in Puppet 2.6.x before 2.6.14 and 2.7.x before 2.7.11, and Puppet Enterprise (PE) Users 1.0, 1.1, 1.2.x, 2.0.x before 2.0.3 does not properly manage group privileges, which allows local users to gain privileges via vectors related to (1) the change_user not dropping supplementary groups in certain conditions, (2) changes to the eguid without associated changes to the egid, or (3) the addition of the real gid to supplementary groups.
How to fix CVE-2012-1053
To remediate CVE-2012-1053, upgrade the affected package to a fixed version below.
- —upgrade to 2.7.11-1 or later
- —upgrade to 2.6.2-5+squeeze4 or later
- —upgrade to 2.6.14 or later
Is CVE-2012-1053 being exploited?
Low — EPSS is 0.0%, meaning exploitation activity has not been observed at scale.
Affected packages (3)
- from 0, < 2.7.11-1
- from 0, < 2.6.2-5+squeeze4
- >= 2.6, < 2.6.14