debian · CVE-2014-7170

Quick triage

Priority: unimportant Published: Updated: Thu, 18 Jun 2026 01:58:16 GMT

View at Official debian advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2014-7170 unimportant priority: Debian including 1 source packages (puppetserver), 3 status rows across 3 suites (bookworm, sid, trixie): resolved 3.

Description:

Race condition in Puppet Server 0.2.0 allows local users to obtain sensitive information by accessing it in between package installation or upgrade and the start of the service.

cvelogic Threat Intelligence