9.8
CVSSv3

CVE-2022-0675

Published: 02/03/2022 Updated: 09/03/2022
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

In certain situations it is possible for an unmanaged rule to exist on the target system that has the same comment as the rule specified in the manifest. This could allow for unmanaged rules to exist on the target system and leave the system in an unsafe state.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

puppet firewall

Vendor Advisories

Debian Bug report logs - #1006749 puppet-module-puppetlabs-firewall: CVE-2022-0675 - unmanaged rules could leave system in an unsafe state via duplicate comment Package: src:puppet-module-puppetlabs-firewall; Maintainer for src:puppet-module-puppetlabs-firewall is Puppet Package Maintainers <pkg-puppet-devel@listsaliothdebianorg> ...
Synopsis Moderate: Red Hat OpenStack Platform 162 (puppet-firewall) security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for puppet-firewall is now available for Red Hat OpenStackPlatform 1623 (Trai ...
Synopsis Moderate: Red Hat OpenStack Platform 1619 (puppet-firewall) security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for puppet-firewall is now available for Red Hat OpenStackPlatform 1619 (Tr ...