Описание
YugabyteDB diagnostic information was transmitted over HTTP, which could expose sensitive data during transmission
An information exposure flaw has been discovered in YugabyteDB. In certain situations diagnostic information is transmitted over HTTP which could expose sensitive data to an adversary who can observe network transmissions.
Меры по смягчению последствий
Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat JBoss Enterprise Application Platform 8 | yugabytedb | Fix deferred | ||
| Red Hat JBoss Enterprise Application Platform Expansion Pack | yugabytedb | Fix deferred |
Показывать по
Дополнительная информация
Статус:
3.7 Low
CVSS3
Связанные уязвимости
YugabyteDB diagnostic information was transmitted over HTTP, which could expose sensitive data during transmission
YugabyteDB diagnostic information was transmitted over HTTP, which could expose sensitive data during transmission
3.7 Low
CVSS3