SuSE: 2014:0155-1: important: puppet
Summary
This update for puppet fixes a remote code execution
vulnerability in the "resource_type" service.
(CVE-2013-4761)
Additionally, the update prevents puppet from executing
initialization scripts that could trigger a system reboot
when handling "puppet resource service" calls.
Security Issue reference:
* CVE-2013-4761
References
#835122 #853982
Cross- CVE-2013-4761
Affected Products:
SUSE Linux Enterprise Server 11 SP3 for VMware
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP2 for VMware
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Desktop 11 SP3
SUSE Linux Enterprise Desktop 11 SP2
https://www.suse.com/security/cve/CVE-2013-4761.html
https://bugzilla.novell.com/835122
https://bugzilla.novell.com/853982
https://login.microfocus.com/nidp/app/login
https://login.microfocus.com/nidp/app/login