CVE-2024-11584: Canonical Cloud-Init
Medium severity, CVSS 5.3. EPSS: 0.1% chance of exploitation in the next 30 days.
cloud-init through 25.1.2 includes the systemd socket unit cloud-init-hotplugd.socket with default SocketMode that grants 0666 permissions, making it world-writable. This is used for the "/run/cloud-init/hook-hotplug-cmd" FIFO. An unprivileged user could trigger hotplug-hook commands.
Affected products
- Canonical Cloud-Init: before 25.1.3 (fixed in 25.1.3)
Published 2025-06-26. Last modified 2026-06-17.