PT-2018-10167 · Canonical+3 · Cloud-Init+3

Laura Pardo

·

Published

2018-07-06

·

Updated

2023-02-13

·

CVE-2018-10896

CVSS v3.1

7.1

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions cloud-init versions 0.6.2 and newer
Description The default cloud-init configuration in affected versions includes "ssh deletekeys: 0", which disables the deletion of ssh host keys. This could lead to instances created by cloning a golden master or template system sharing ssh host keys, allowing them to impersonate one another or conduct man-in-the-middle attacks.
Recommendations For cloud-init versions 0.6.2 and newer, consider changing the default cloud-init configuration to enable the deletion of ssh host keys by setting "ssh deletekeys: 1" to prevent instances from sharing ssh host keys.

Fix

Weakness Enumeration

Related Identifiers

ALT-PU-2018-2836
CESA-2020_3050
CESA-2020_3898
CVE-2018-10896
RHSA-2020:3050
RHSA-2020:3644
RHSA-2020:3898
RHSA-2020_3050
RHSA-2020_3898

Affected Products

Alt Linux
Centos
Red Hat
Cloud-Init