Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-8632

Опубликовано: 05 фев. 2020
Источник: debian
EPSS Низкий

Описание

In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value, which makes it easier for attackers to guess passwords.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cloud-initfixed19.4-2package
cloud-initno-dsabusterpackage
cloud-initno-dsastretchpackage

Примечания

  • https://bugs.launchpad.net/ubuntu/+source/cloud-init/+bug/1860795

  • https://github.com/canonical/cloud-init/pull/189

  • https://github.com/canonical/cloud-init/commit/42788bf24a1a0a5421a2d00a7f59b59e38ba1a14

EPSS

Процентиль: 27%
0.00097
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 6 лет назад

In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value, which makes it easier for attackers to guess passwords.

CVSS3: 8.1
redhat
около 6 лет назад

In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value, which makes it easier for attackers to guess passwords.

CVSS3: 5.5
nvd
около 6 лет назад

In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value, which makes it easier for attackers to guess passwords.

CVSS3: 5.5
msrc
больше 5 лет назад

In cloud-init through 19.4 rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value which makes it easier for attackers to guess passwords.

github
больше 3 лет назад

In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value, which makes it easier for attackers to guess passwords.

EPSS

Процентиль: 27%
0.00097
Низкий