CVSS 3 Base Score:

Posted On:

Assessed Risk Level:
High

On August 13, 2020, PostgreSQL published a security update addressing CVE-2020-14349 and CVE-2020-14350. Puppet Enterprise 2018.1.17 and 2019.8.3 contain an updated version of PostgreSQL that has patched the vulnerabilities.

For more information about the vulnerabilities, refer to the Postgresql News Page.

Status:

Affected software versions:
  • Puppet Enterprise prior to 2018.1.17
  • Puppet Enterprise prior to 2019.8.3
Resolved in:
  • Puppet Enterprise 2018.1.17
  • Puppet Enterprise 2019.8.3