puppet 0.25.4-2ubuntu6.7 source package in Ubuntu

Changelog

puppet (0.25.4-2ubuntu6.7) lucid-security; urgency=low

  * SECURITY UPDATE: Arbitrary file writes via predictable filename usage in
    appdmg and pkgdmg providers
    - lib/puppet/provider/package/{appdmg.rb,pkgdmg.rb}: Use mktmpdir when
      downloading packages. Based on upstream patch.
    - CVE-2012-1906
  * SECURITY UPDATE: Arbitrary file reads via Filebucket REST requests
    - lib/puppet/network/http/api/v1.rb: Fix for bucket_path security
      vulnerability. Based on upstream patch.
    - CVE-2012-1986
  * SECURITY UPDATE: Denial of service via Filebucket text/marshall support
    - lib/puppet/network/formats.rb: Removed text/marshal support. Based on
      upstream patch.
    - CVE-2012-1987
  * SECURITY UPDATE: Arbitrary code execution via Filebucket requests
    - lib/puppet/network/http/api/v1.rb: Fix for bucket_path security
      vulnerability. Based on upstream patch.
    - CVE-2012-1988
  * spec/unit/property/keyvalue.rb: Fix testsuite failure caused by hash
    randomization in Ruby. Based on upstream patch.
    - 765036c707a29077107674ad5c6277df6e637b28
 -- Tyler Hicks <email address hidden>   Tue, 10 Apr 2012 11:47:14 -0500

Upload details

Uploaded by:
Tyler Hicks
Uploaded to:
Lucid
Original maintainer:
Ubuntu Core Developers
Architectures:
all
Section:
admin
Urgency:
Low Urgency

See full publishing history Publishing

Series Pocket Published Component Section

Builds

Lucid: [FULLYBUILT] i386

Downloads

File Size SHA-256 Checksum
puppet_0.25.4.orig.tar.gz 1.3 MiB 94999cecf1408b26facf0416a7fc41a6b167bcf0fbb39f491e7eb79f6d1e506e
puppet_0.25.4-2ubuntu6.7.diff.gz 59.8 KiB 0fb49a3dc27c512dc157f95f1e53b9fb50039fb8fe2cbe17b1b99ee51c3e192d
puppet_0.25.4-2ubuntu6.7.dsc 2.2 KiB 0a2edf7ab05ba0edcb41040887390c50750ba455b81d3369df3a76bbef8fc268

View changes file

Binary packages built by this source

puppet: No summary available for puppet in ubuntu lucid.

No description available for puppet in ubuntu lucid.

puppet-common: No summary available for puppet-common in ubuntu lucid.

No description available for puppet-common in ubuntu lucid.

puppet-el: No summary available for puppet-el in ubuntu lucid.

No description available for puppet-el in ubuntu lucid.

puppet-testsuite: No summary available for puppet-testsuite in ubuntu lucid.

No description available for puppet-testsuite in ubuntu lucid.

puppetmaster: No summary available for puppetmaster in ubuntu lucid.

No description available for puppetmaster in ubuntu lucid.

vim-puppet: No summary available for vim-puppet in ubuntu lucid.

No description available for vim-puppet in ubuntu lucid.