Debian Package Tracker
Register | Log in
Subscribe

cloud-init

initialization system for infrastructure cloud instances

Choose email to subscribe with

general
  • source: cloud-init (main)
  • version: 22.4.2-1
  • maintainer: Debian Cloud Team (archive) (DMD)
  • uploaders: Bastian Blank [DMD] – Noah Meyerhans [DMD] – Thomas Goirand [DMD]
  • arch: all
  • std-ver: 4.5.0
  • VCS: Git (Browse, QA)
versions [more versions can be listed by madison] [old versions available from snapshot.debian.org]
[pool directory]
  • oldstable: 20.2-2~deb10u2
  • old-bpo: 20.2-2~bpo10+1
  • stable: 20.4.1-2+deb11u1
  • stable-bpo: 22.2-1~bpo11+1
  • testing: 22.4.2-1
  • unstable: 22.4.2-1
versioned links
  • 20.2-2~bpo10+1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 20.2-2~deb10u2: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 20.4.1-2+deb11u1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 22.2-1~bpo11+1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
  • 22.4.2-1: [.dsc, use dget on this link to retrieve source package] [changelog] [copyright] [rules] [control]
binaries
  • cloud-init (14 bugs: 0, 10, 4, 0)
action needed
A new upstream version is available: 23.1.2 high
A new upstream version 23.1.2 is available, you should consider packaging it.
Created: 2023-02-24 Last update: 2023-05-17 13:01
1 security issue in sid high

There is 1 open security issue in sid.

1 important issue:
  • CVE-2023-1786: Sensitive data could be exposed in logs of cloud-init before version 23.1.2. An attacker could use this information to find hashed passwords and possibly escalate their privilege.
Created: 2023-04-27 Last update: 2023-05-03 23:04
1 security issue in bookworm high

There is 1 open security issue in bookworm.

1 important issue:
  • CVE-2023-1786: Sensitive data could be exposed in logs of cloud-init before version 23.1.2. An attacker could use this information to find hashed passwords and possibly escalate their privilege.
Created: 2023-04-27 Last update: 2023-05-03 23:04
lintian reports 1 error and 10 warnings high
Lintian reports 1 error and 10 warnings about this package. You should make the package lintian clean getting rid of them.
Created: 2022-09-06 Last update: 2023-02-18 03:35
2 bugs tagged patch in the BTS normal
The BTS contains patches fixing 2 bugs, consider including or untagging them.
Created: 2022-07-27 Last update: 2023-05-17 12:30
1 new commit since last upload, is it time to release? normal
vcswatch reports that this package seems to have new commits in its VCS but has not yet updated debian/changelog. You should consider updating the Debian changelog and uploading this new version into the archive.

Here are the relevant commit logs:
commit 3a4ae9731dd6656a2df6a697d51526536b86f452
Author: Jochen Sprickerhof <jspricke@debian.org>
Date:   Wed Dec 14 22:17:56 2022 +0100

    Drop unused build dependencies
    
    Those where dropped upstream in 20.2.
Created: 2022-12-21 Last update: 2023-05-15 07:30
1 low-priority security issue in bullseye low

There is 1 open security issue in bullseye.

1 issue left for the package maintainer to handle:
  • CVE-2023-1786: (needs triaging) Sensitive data could be exposed in logs of cloud-init before version 23.1.2. An attacker could use this information to find hashed passwords and possibly escalate their privilege.

You can find information about how to handle this issue in the security team's documentation.

Created: 2023-04-27 Last update: 2023-05-03 23:04
debian/patches: 4 patches to forward upstream low

Among the 5 debian patches available in version 22.4.2-1 of the package, we noticed the following issues:

  • 4 patches where the metadata indicates that the patch has not yet been forwarded upstream. You should either forward the patch upstream or update the metadata to document its real status.
Created: 2023-02-26 Last update: 2023-02-26 15:54
Standards version of the package is outdated. wishlist
The package should be updated to follow the last version of Debian Policy (Standards-Version 4.6.2 instead of 4.5.0).
Created: 2020-11-17 Last update: 2022-12-17 19:17
news
[rss feed]
  • [2022-12-20] cloud-init 22.4.2-1 MIGRATED to testing (Debian testing watch)
  • [2022-12-20] cloud-init 22.4.2-1 MIGRATED to testing (Debian testing watch)
  • [2022-12-14] Accepted cloud-init 22.4.2-1 (source) into unstable (Noah Meyerhans)
  • [2022-10-20] cloud-init 22.2-3.1 MIGRATED to testing (Debian testing watch)
  • [2022-10-15] Accepted cloud-init 22.2-3.1 (source) into unstable (Michael Biebl)
  • [2022-09-10] cloud-init 22.2-3 MIGRATED to testing (Debian testing watch)
  • [2022-09-10] cloud-init 22.2-3 MIGRATED to testing (Debian testing watch)
  • [2022-09-05] Accepted cloud-init 22.2-3 (source) into unstable (Bastian Blank)
  • [2022-07-06] cloud-init 22.2-2 MIGRATED to testing (Debian testing watch)
  • [2022-07-03] Accepted cloud-init 22.2-2 (source) into unstable (Thomas Goirand)
  • [2022-06-22] Accepted cloud-init 22.2-1~bpo11+1 (source all) into bullseye-backports, bullseye-backports (Debian FTP Masters) (signed by: Bastian Blank)
  • [2022-06-06] cloud-init 22.2-1 MIGRATED to testing (Debian testing watch)
  • [2022-06-06] cloud-init 22.2-1 MIGRATED to testing (Debian testing watch)
  • [2022-05-31] Accepted cloud-init 22.2-1 (source) into unstable (Noah Meyerhans)
  • [2022-04-03] cloud-init 21.4-3 MIGRATED to testing (Debian testing watch)
  • [2022-03-29] Accepted cloud-init 21.4-3 (source) into unstable (Bastian Blank)
  • [2022-03-28] Accepted cloud-init 21.4-2 (source) into unstable (Bastian Blank)
  • [2021-11-09] cloud-init 21.4-1 MIGRATED to testing (Debian testing watch)
  • [2021-11-03] Accepted cloud-init 21.4-1 (source) into unstable (Noah Meyerhans)
  • [2021-10-30] cloud-init 21.3-2 MIGRATED to testing (Debian testing watch)
  • [2021-10-24] Accepted cloud-init 21.3-2 (source) into unstable (Thomas Goirand)
  • [2021-09-08] Accepted cloud-init 20.4.1-2+deb11u1 (source) into proposed-updates->stable-new, proposed-updates (Debian FTP Masters) (signed by: Noah Meyerhans)
  • [2021-09-01] cloud-init 21.3-1 MIGRATED to testing (Debian testing watch)
  • [2021-08-26] Accepted cloud-init 21.3-1 (source) into unstable (Noah Meyerhans)
  • [2021-08-18] cloud-init 21.2-1 MIGRATED to testing (Debian testing watch)
  • [2021-08-12] Accepted cloud-init 21.2-1 (source) into unstable (Noah Meyerhans)
  • [2021-03-25] cloud-init 20.4.1-2 MIGRATED to testing (Debian testing watch)
  • [2021-03-20] Accepted cloud-init 0.7.9-2+deb9u1 (source) into oldstable (Noah Meyerhans)
  • [2021-03-19] Accepted cloud-init 20.2-2~deb10u2 (source) into proposed-updates->stable-new, proposed-updates (Debian FTP Masters) (signed by: Noah Meyerhans)
  • [2021-03-19] Accepted cloud-init 20.4.1-2 (source) into unstable (Noah Meyerhans)
  • 1
  • 2
bugs [bug history graph]
  • all: 16
  • RC: 0
  • I&N: 11
  • M&W: 5
  • F&P: 0
  • patch: 2
links
  • homepage
  • lintian (1, 10)
  • buildd: logs, reproducibility
  • popcon
  • browse source code
  • edit tags
  • other distros
  • security tracker
  • screenshots
  • debian patches
ubuntu Ubuntu logo [Information about Ubuntu for Debian Developers]
  • version: 23.1.2-0ubuntu0~23.04.1
  • 77 bugs (4 patches)

Debian Package Tracker — Copyright 2013-2018 The Distro Tracker Developers
Report problems to the tracker.debian.org pseudo-package in the Debian BTS.
Documentation — Bugs — Git Repository — Contributing