The mechanism which performs certificate validation was discovered to have a flaw that resulted in certificates signed by an internal certificate authority to not be properly validated. This issue only affects clients that are configured to utilize Tenable.sc as the vulnerability data source.
References
Link | Resource |
---|---|
https://puppet.com/security/cve/CVE-2021-27018 | Vendor Advisory |
https://puppet.com/security/cve/CVE-2021-27018 | Vendor Advisory |
Configurations
History
21 Nov 2024, 05:57
Type | Values Removed | Values Added |
---|---|---|
References | () https://puppet.com/security/cve/CVE-2021-27018 - Vendor Advisory |
Information
Published : 2021-08-30 18:15
Updated : 2024-11-21 05:57
NVD link : CVE-2021-27018
Mitre link : CVE-2021-27018
CVE.ORG link : CVE-2021-27018
JSON object : View
Products Affected
puppet
- remediate
CWE
CWE-295
Improper Certificate Validation