Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In cloud-init through 19.4, rand_user_password in cloudinit/config/cc_set_passwords.py has a small default pwlen value, which makes it easier for attackers to guess passwords.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cloud-init 安全漏洞
Vulnerability Description
Cloud-init是一款用于云平台的虚拟机初始化工具。 Cloud-init 19.4及之前版本中存在安全漏洞,该漏洞源于cloudinit/config/cc_set_passwords.py文件中的rand_user_password使用了较小的默认pwlen值。攻击者可利用该漏洞猜测出密码。
CVSS Information
N/A
Vulnerability Type
N/A