Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2015-1426

Puppet Labs Facter 1.6.0 through 2.4.0 allows local users to obtains sensitive Amazon EC2 IAM instance metadata by reading a fact for an Amazon EC2 node.

  • Published: Feb 23, 2015
  • Updated: Apr 13, 2023
  • CVE: CVE-2015-1426
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 2.1
  • AV:L/AC:L/Au:N/C:P/I:N/A:N

CWEs:

Software From Fixed in
puppetlabs / facter 1.7.1 1.7.1.x
puppetlabs / facter 1.7.4 1.7.4.x
puppetlabs / facter 1.6.18 1.6.18.x
puppetlabs / facter 1.6.17 1.6.17.x
puppetlabs / facter 1.6.13 1.6.13.x
puppetlabs / facter 1.6.10 1.6.10.x
puppetlabs / facter 2.0.1 2.0.1.x
puppetlabs / facter 1.7.5 1.7.5.x
puppetlabs / facter 1.6.15 1.6.15.x
puppetlabs / facter 1.6.9 1.6.9.x
puppetlabs / facter 1.6.7 1.6.7.x
puppetlabs / facter 1.6.8 1.6.8.x
puppetlabs / facter 1.7.6 1.7.6.x
puppetlabs / facter 1.6.6 1.6.6.x
puppetlabs / facter 1.6.2 1.6.2.x
puppetlabs / facter 1.6.3 1.6.3.x
puppetlabs / facter 1.6.11 1.6.11.x
puppetlabs / facter 1.6.14 1.6.14.x
puppetlabs / facter 1.7.0 1.7.0.x
puppetlabs / facter 1.6.5 1.6.5.x
puppetlabs / facter 1.7.2 1.7.2.x
puppetlabs / facter 1.7.3 1.7.3.x
puppetlabs / facter 1.6.12 1.6.12.x
puppetlabs / facter 1.6.4 1.6.4.x
puppetlabs / facter 1.6.1 1.6.1.x
puppet / facter 1.6.1-rc1 1.6.1-rc1.x
puppet / facter 1.6.1-rc2 1.6.1-rc2.x
puppet / facter 1.6.1-rc3 1.6.1-rc3.x
puppet / facter 1.6.1-rc4 1.6.1-rc4.x
puppet / facter 1.6.2-rc1 1.6.2-rc1.x
puppet / facter 1.6.3-rc1 1.6.3-rc1.x
puppet / facter 1.6.4-rc1 1.6.4-rc1.x
puppet / facter 1.6.5-rc1 1.6.5-rc1.x
puppet / facter 1.6.6-rc1 1.6.6-rc1.x
puppet / facter 1.6.6-rc2 1.6.6-rc2.x
puppet / facter 1.6.7-rc1 1.6.7-rc1.x
puppet / facter 1.6.8-rc1 1.6.8-rc1.x
puppet / facter 1.6.9-rc1 1.6.9-rc1.x
puppet / facter 1.6.10-rc1 1.6.10-rc1.x
puppet / facter 1.6.11-rc1 1.6.11-rc1.x
puppet / facter 1.6.12-rc1 1.6.12-rc1.x
puppet / facter 1.6.12-rc2 1.6.12-rc2.x
puppet / facter 1.6.13-rc1 1.6.13-rc1.x
puppet / facter 1.6.14-rc1 1.6.14-rc1.x
puppet / facter 1.6.15-rc1 1.6.15-rc1.x
puppet / facter 1.6.16 1.6.16.x
puppet / facter 1.6.17-rc1 1.6.17-rc1.x
puppet / facter 1.6.18-rc1 1.6.18-rc1.x
puppet / facter 1.7.0-rc1 1.7.0-rc1.x
puppet / facter 1.7.0-rc2 1.7.0-rc2.x
puppet / facter 1.7.1-rc1 1.7.1-rc1.x
puppet / facter 1.7.2-rc1 1.7.2-rc1.x
puppet / facter 1.7.3-rc1 1.7.3-rc1.x
puppet / facter 1.7.4-rc1 1.7.4-rc1.x
puppet / facter 1.7.5-rc1 1.7.5-rc1.x
puppet / facter 1.7.5-rc2 1.7.5-rc2.x
puppet / facter 2.0.0-rc1 2.0.0-rc1.x
puppet / facter 2.0.0-rc2 2.0.0-rc2.x
puppet / facter 2.0.0-rc3 2.0.0-rc3.x
puppet / facter 2.0.0-rc4 2.0.0-rc4.x
puppet / facter 2.0.1-rc1 2.0.1-rc1.x
puppet / facter 2.0.1-rc2 2.0.1-rc2.x
puppet / facter 2.0.1-rc3 2.0.1-rc3.x
puppet / facter 2.0.1-rc4 2.0.1-rc4.x
puppet / facter 2.0.2 2.0.2.x
puppet / facter 2.1.0 2.1.0.x
puppet / facter 2.2.0 2.2.0.x
puppet / facter 2.3.0 2.3.0.x
puppet / facter 2.4.0 2.4.0.x
puppet / facter 1.6.0 1.6.0.x