Known vulnerabilities in cloud-init (Red Hat package)

Software CPE: cpe:2.3:o:red_hat:cloud-init_redhat_package:*:*:*:*:*:red_hat_enterprise_linux:*:*
Total vulnerabilities: 5
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.8

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting cloud-init (Red Hat package) cloud-init (Red Hat package) is affected by 5 known vulnerabilities: 1 high, 1 medium, 3 low Critical High Medium Low

Vulnerabilities (5)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU112884 - Insufficient Verification of Data Authenticity
CVE-2024-6174
CWE-345 High
No
No
21.1-15.el8_6.4, 21.1-19.el9_0.7, 22.1-8.el8_8.2, 22.1-10.el9_2.1, 23.4-7.el8_10.10, 24.4-3.el10_0.2, 24.4-4.el9_6.3 14.07.2025 SB2025071434
SB2025071437
SB2025071438
and 18 more
#VU75538 - Exposure of sensitive information to an unauthorized actor
CVE-2023-1786
CWE-200 Medium
No
No
23.1.1-10.el8, 23.1.1-11.el9 27.04.2023 SB2023042703
SB2023042706
SB2023051101
and 16 more
#VU51629 - Information Exposure Through Log Files
CVE-2021-3429
CWE-532 Low
No
No
18.5-7.el8_1.6, 18.5-12.el8_2.10, 20.3-10.el8_4.5 23.03.2021 SB2021032302
SB2021032303
SB2021081120
and 7 more
#VU51628 - Insufficiently Protected Credentials
CVE-2020-8632
CWE-522 Low
No
No
19.4-11.el8 23.03.2021 SB2021032302
SB2021032303
SB2020110440
and 1 more
#VU51627 - Use of Insufficiently Random Values
CVE-2020-8631
CWE-330 Low
No
No
19.4-11.el8 23.03.2021 SB2021032302
SB2021032303
SB2020110440
and 1 more