Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2024-0831

Опубликовано: 01 фев. 2024
Источник: redhat
CVSS3: 4.5
EPSS Низкий

Описание

Vault and Vault Enterprise (“Vault”) may expose sensitive information when enabling an audit device which specifies the log_raw option, which may log sensitive information to other audit devices, regardless of whether they are configured to use log_raw.

A sensitive information disclosure vulnerability was found in Hashicorp Vault. Enabling an audit device that specifies the log_raw option may log sensitive information to oth

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
cert-manager Operator for Red Hat OpenShiftcert-manager/jetstack-cert-manager-rhel9Not affected
Custom Metric Autoscaler operator for Red Hat Openshiftcustom-metrics-autoscaler/custom-metrics-autoscaler-rhel8Not affected
OpenShift Pipelinesopenshift-pipelines-clientNot affected
Red Hat OpenShift Container Platform 4openshift4/ose-contour-rhel8Not affected
Red Hat Openshift Container Storage 4mcgNot affected
Red Hat Openshift Container Storage 4ocs4/cephcsi-rhel8Not affected
Red Hat Openshift Container Storage 4ocs4/mcg-rhel8-operatorNot affected
Red Hat Openshift Container Storage 4ocs4/ocs-rhel8-operatorNot affected
Red Hat Openshift Container Storage 4ocs4/rook-ceph-rhel8-operatorNot affected
Red Hat Openshift Data Foundation 4mcgNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-532
https://bugzilla.redhat.com/show_bug.cgi?id=2262236vault: sensitive information disclosure

EPSS

Процентиль: 37%
0.00156
Низкий

4.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.5
nvd
около 2 лет назад

Vault and Vault Enterprise (“Vault”) may expose sensitive information when enabling an audit device which specifies the `log_raw` option, which may log sensitive information to other audit devices, regardless of whether they are configured to use `log_raw`.

CVSS3: 4.5
github
около 2 лет назад

Hashicorp Vault may expose sensitive log information

EPSS

Процентиль: 37%
0.00156
Низкий

4.5 Medium

CVSS3