OpenStack Image Registry and Delivery Service (Glance) 2013.2 through 2013.2.1 and Icehouse before icehouse-2 logs a URL containing the Swift store backend password when authentication fails and WARNING level logging is enabled, which allows local users to obtain sensitive information by reading the log.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2014-0105 | OpenStack Image Registry and Delivery Service (Glance) 2013.2 through 2013.2.1 and Icehouse before icehouse-2 logs a URL containing the Swift store backend password when authentication fails and WARNING level logging is enabled, which allows local users to obtain sensitive information by reading the log. |
![]() |
GHSA-4xw6-hj5p-4j79 | OpenStack Glance sensitive information disclosure via logs |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-06T09:58:15.971Z
Reserved: 2014-02-12T00:00:00
Link: CVE-2014-1948

No data.

Status : Deferred
Published: 2014-02-14T15:55:06.407
Modified: 2025-04-11T00:51:21.963
Link: CVE-2014-1948


No data.