Description
OpenStack Identity (Keystone) Grizzly 2013.1.1, when DEBUG mode logging is enabled, logs the (1) admin_token and (2) LDAP password in plaintext, which allows local users to obtain sensitive by reading the log file.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2013-0015 | OpenStack Identity (Keystone) Grizzly 2013.1.1, when DEBUG mode logging is enabled, logs the (1) admin_token and (2) LDAP password in plaintext, which allows local users to obtain sensitive by reading the log file. |
Github GHSA |
GHSA-rxrm-xvp4-jqvh | OpenStack Keystone Sensitive information disclosure via log files |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T15:20:37.444Z
Reserved: 2013-02-19T00:00:00.000Z
Link: CVE-2013-2006
No data.
Status : Deferred
Published: 2013-05-21T18:55:02.340
Modified: 2025-04-11T00:51:21.963
Link: CVE-2013-2006
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA