{"id":"UBUNTU-CVE-2026-85979","details":"Affected versions of Puppet Enterprise contain a command injection vulnerability in the handling of the java_keystore_passwd parameter. An authenticated user with Puppet administrative privileges can inject arbitrary shell commands by providing a specially crafted value for this parameter, which is passed to a shell execution context without sufficient sanitization. Because the resulting commands are executed with root privileges, successful exploitation can lead to full compromise of the affected system.","modified":"2026-09-16T11:43:10Z","published":"2026-09-11T15:17:00Z","upstream":["CVE-2026-85979"],"references":[{"type":"REPORT","url":"https://ubuntu.com/security/CVE-2026-85979"},{"type":"REPORT","url":"https://www.cve.org/CVERecord?id=CVE-2026-85979"},{"type":"REPORT","url":"https://portal.perforce.com/s/cve/a91Qi000003CybNIAS/command-injection-in-puppet-enterprise"}],"affected":[{"package":{"name":"puppetserver","ecosystem":"Ubuntu:24.04:LTS","purl":"pkg:deb/ubuntu/puppetserver?arch=source&distro=noble"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["7.9.5-2","8.4.0-1"],"ecosystem_specific":{"binaries":[{"binary_version":"8.4.0-1","binary_name":"puppet-master"},{"binary_name":"puppet-master-passenger","binary_version":"8.4.0-1"},{"binary_version":"8.4.0-1","binary_name":"puppetserver"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-85979.json"}},{"package":{"name":"puppetserver","ecosystem":"Ubuntu:26.04:LTS","purl":"pkg:deb/ubuntu/puppetserver?arch=source&distro=resolute"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"}]}],"versions":["8.7.0-3","8.7.0-6","8.7.0-6ubuntu1"],"ecosystem_specific":{"binaries":[{"binary_name":"puppetserver","binary_version":"8.7.0-6ubuntu1"}]},"database_specific":{"source":"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2026/UBUNTU-CVE-2026-85979.json"}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V4","score":"CVSS:4.0/AV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N"},{"type":"Ubuntu","score":"medium"}]}