summaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorSalvatore Bonaccorso <carnil@debian.org>2020-02-15 11:35:18 +0100
committerSalvatore Bonaccorso <carnil@debian.org>2020-02-15 11:35:18 +0100
commit7c3f82be155763c61c1b3b62666cc29a79ca2744 (patch)
treebe1dd46785722ba2f7d7ce59b49a482fe8af2de8
parent3146fe495e8d5c5db3c79d13f59911c3a03933a9 (diff)
Add reference to upstream fix for CVE-2020-8632/cloud-init
-rw-r--r--data/CVE/list.20201
1 files changed, 1 insertions, 0 deletions
diff --git a/data/CVE/list.2020 b/data/CVE/list.2020
index 3c217caa7b..70f4534b08 100644
--- a/data/CVE/list.2020
+++ b/data/CVE/list.2020
@@ -742,6 +742,7 @@ CVE-2020-8632 (In cloud-init through 19.4, rand_user_password in cloudinit/confi
[stretch] - cloud-init <no-dsa> (Minor issue)
NOTE: https://bugs.launchpad.net/ubuntu/+source/cloud-init/+bug/1860795
NOTE: https://github.com/canonical/cloud-init/pull/189
+ NOTE: https://github.com/canonical/cloud-init/commit/42788bf24a1a0a5421a2d00a7f59b59e38ba1a14
CVE-2020-8631 (cloud-init through 19.4 relies on Mersenne Twister for a random passwo ...)
- cloud-init <unfixed>
[buster] - cloud-init <no-dsa> (Minor issue)

© 2014-2024 Faster IT GmbH | imprint | privacy policy