Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-1948

Опубликовано: 14 фев. 2014
Источник: ubuntu
Приоритет: medium
CVSS2: 2.6

Описание

OpenStack Image Registry and Delivery Service (Glance) 2013.2 through 2013.2.1 and Icehouse before icehouse-2 logs a URL containing the Swift store backend password when authentication fails and WARNING level logging is enabled, which allows local users to obtain sensitive information by reading the log.

РелизСтатусПримечание
devel

not-affected

1:2014.1~b3-0ubuntu2
lucid

DNE

precise

not-affected

quantal

not-affected

saucy

not-affected

1:2013.2.2-0ubuntu1
upstream

released

2013.2.2-1

Показывать по

2.6 Low

CVSS2

Связанные уязвимости

redhat
почти 12 лет назад

OpenStack Image Registry and Delivery Service (Glance) 2013.2 through 2013.2.1 and Icehouse before icehouse-2 logs a URL containing the Swift store backend password when authentication fails and WARNING level logging is enabled, which allows local users to obtain sensitive information by reading the log.

nvd
почти 12 лет назад

OpenStack Image Registry and Delivery Service (Glance) 2013.2 through 2013.2.1 and Icehouse before icehouse-2 logs a URL containing the Swift store backend password when authentication fails and WARNING level logging is enabled, which allows local users to obtain sensitive information by reading the log.

debian
почти 12 лет назад

OpenStack Image Registry and Delivery Service (Glance) 2013.2 through ...

CVSS3: 6.2
github
больше 3 лет назад

OpenStack Glance sensitive information disclosure via logs

2.6 Low

CVSS2