CVE-2023-1786
26.04.2023, 23:15
Sensitive data could be exposed in logs of cloud-init before version 23.1.2. An attacker could use this information to find hashed passwords and possibly escalate their privilege.Enginsight
| Vendor | Product | Version |
|---|---|---|
| canonical | cloud-init | 𝑥 < 23.1.2 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 18.04 |
| canonical | ubuntu_linux | 20.04 |
| canonical | ubuntu_linux | 22.04 |
| canonical | ubuntu_linux | 22.10 |
| canonical | ubuntu_linux | 23.04 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| cloud-init |
|
Common Weakness Enumeration
References