ZeroHour

CVE-2023-1786

CVSS 3.1
5.5 medium
EPSS
<1%p18
Published
()
Modified
Description

Sensitive data could be exposed in logs of cloud-init before version 23.1.2. An attacker could use this information to find hashed passwords and possibly escalate their privilege.

Vendors
canonicalfedoraproject
Products
cloud-init, ubuntu linux, fedora
Weakness
CWE-532
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.