Several security issues were fixed in cloud-init.
Comment
Several security issues were fixed in cloud-init.
Backport fixes for CVE-2024-6174 and CVE-2024-11584 cloud-init included the systemd socket unit cloud-init-hotplugd.socket with default SocketMode that grants 0666 permissions, making it world-writable. An unprivelege user could trigger hotplug-hook commands (CVE-2024-11584) When a non-x86 platform is detected, cloud-init granted root access to a
Update to 138.0.7204.168 CVE-2025-8010: Type Confusion in V8 CVE-2025-8011: Type Confusion in V8
Several security issues were fixed in the Linux kernel.
Several security issues were fixed in OpenJDK 11.
50 queries. 8.5 mb Memory usage. 0.287 seconds.