Fedora Account System
Red Hat Associate
Red Hat Customer
Local registry credentials were included directly in the CD4PE deployment definition, which could expose these credentials to users who should not have access to them. References: https://puppet.com/security/cve/CVE-2020-7945
Created puppet tracking bugs for this issue: Affects: epel-all [bug 1882354] Affects: fedora-all [bug 1882353]
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2020-7945