Description
OpenStack Image Registry and Delivery Service (Glance) 2013.2 through 2013.2.1 and Icehouse before icehouse-2 logs a URL containing the Swift store backend password when authentication fails and WARNING level logging is enabled, which allows local users to obtain sensitive information by reading the log.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2014-0105 | OpenStack Image Registry and Delivery Service (Glance) 2013.2 through 2013.2.1 and Icehouse before icehouse-2 logs a URL containing the Swift store backend password when authentication fails and WARNING level logging is enabled, which allows local users to obtain sensitive information by reading the log. |
Github GHSA |
GHSA-4xw6-hj5p-4j79 | OpenStack Glance sensitive information disclosure via logs |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T09:58:15.971Z
Reserved: 2014-02-12T00:00:00.000Z
Link: CVE-2014-1948
No data.
Status : Deferred
Published: 2014-02-14T15:55:06.407
Modified: 2025-04-11T00:51:21.963
Link: CVE-2014-1948
OpenCVE Enrichment
No data.
EUVD
Github GHSA