{"id":"CVE-2021-27025","details":"A flaw was discovered in Puppet Agent where the agent may silently ignore Augeas settings or may be vulnerable to a Denial of Service condition prior to the first 'pluginsync'.","aliases":["GHSA-q4g7-jrxv-67r9"],"modified":"2026-04-10T04:31:25.071613Z","published":"2021-11-18T15:15:09.503Z","references":[{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/62SELE7EKVKZL4GABFMVYMIIUZ7FPEF7/"},{"type":"ADVISORY","url":"https://puppet.com/security/cve/cve-2021-27025"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/puppetlabs/puppet","events":[{"introduced":"0"},{"fixed":"7a5e45468aeec63f6bddc60ccc9a722fb77b6a38"},{"introduced":"ceec9d2b6ab716cf90c2f8f4384632ebd1afc338"},{"last_affected":"c28e71c38d26c17b580d9eb672733e67a79a17c7"},{"introduced":"f664d6a21656f80b54b396529c84ee7e24108921"},{"fixed":"7f266c2fe266a4a4eb9b0b335d61d515f11c0e0b"}],"database_specific":{"versions":[{"introduced":"0"},{"fixed":"6.25.1"},{"introduced":"5.5.0"},{"last_affected":"5.5.22"},{"introduced":"7.0.0"},{"fixed":"7.12.1"}]}}],"versions":["0.24.0","0.24.1","0.25.0","0.25.0beta1","0.25.0beta2","0.25.0rc1","0.25.1rc1","0.25.1rc2","2.6.0","2.6.0rc1","2.6.0rc2","2.6.0rc3","2.6.0rc4","2.7.0rc1","3.1.0-rc2","3.2.0-rc1","3.4.0-rc1","4.0.0-rc1","4.0.0-rc2","4.2.0","4.2.1","4.2.2","4.2.3","4.6.0","4.8.0","4.9.0","5.5.11","5.5.12","5.5.13","5.5.14","5.5.15","5.5.16","5.5.17","5.5.18","5.5.19","5.5.2","5.5.20","5.5.21","5.5.22","5.5.3","5.5.6","5.5.8","5.5.9","6.10.0","6.10.1","6.11.0","6.12.0","6.13.0","6.14.0","6.15.0","6.16.0","6.17.0","6.18.0","6.19.0","6.2.0","6.20.0","6.21.0","6.22.0","6.23.0","6.3.0","6.4.0","6.5.0","6.6.0","6.7.0","6.8.0","6.9.0","7.0.0","7.1.0","7.10.0","7.11.0","7.12.0","7.2.0","7.3.0","7.4.0","7.5.0","7.6.0","7.7.0","7.8.0","tags/2.6.0rc1","tags/2.6.0rc2","tags/2.6.0rc3","upstream/0.25.0"],"database_specific":{"unresolved_ranges":[{"events":[{"introduced":"2021.0.0"},{"fixed":"2021.4.0"}]},{"events":[{"introduced":"0"},{"fixed":"2019.8.9"}]},{"events":[{"introduced":"0"},{"last_affected":"35"}]}],"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-27025.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H"}]}