Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-2084

Опубликовано: 19 апр. 2023
Источник: debian

Описание

Sensitive data could be exposed in world readable logs of cloud-init before version 22.3 when schema failures are reported. This leak could include hashed passwords.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cloud-initfixed22.2-2package
cloud-initnot-affectedbullseyepackage
cloud-initnot-affectedbusterpackage

Примечания

  • https://github.com/canonical/cloud-init/commit/4d467b14363d800b2185b89790d57871f11ea88c

  • https://bugs.launchpad.net/cloud-init/+bug/1978422

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 2 лет назад

Sensitive data could be exposed in world readable logs of cloud-init before version 22.3 when schema failures are reported. This leak could include hashed passwords.

CVSS3: 5.5
redhat
больше 2 лет назад

Sensitive data could be exposed in world readable logs of cloud-init before version 22.3 when schema failures are reported. This leak could include hashed passwords.

CVSS3: 5.5
nvd
больше 2 лет назад

Sensitive data could be exposed in world readable logs of cloud-init before version 22.3 when schema failures are reported. This leak could include hashed passwords.

CVSS3: 5.5
msrc
больше 2 лет назад

Описание отсутствует

CVSS3: 5.5
github
больше 2 лет назад

Sensitive data could be exposed in world readable logs of cloud-init before version 22.3 when schema failures are reported. This leak could include hashed passwords.