CVSS 3 Base Score:

Posted On:

Assessed Risk Level:
Critical

On November 12, 2020, PostgreSQL published a security update addressing CVE-2020-25695, CVE-2020-25694, and CVE-2020-25696. Puppet Enterprise 2018.1.18 and 2019.8.4 contain an updated version of PostgreSQL that has patched the vulnerabilities.

For more information about the vulnerabilities, refer to the Postgresql News Page.

Status:

Affected software versions:
  • Puppet Enterprise prior to 2018.1.18
  • Puppet Enterprise prior to 2019.8.4
Resolved in:
  • Puppet Enterprise 2018.1.18
  • Puppet Enterprise 2019.8.4