A sensitive data disclosure flaw was found in the Elasticsearch repository-azure (formerly elasticsearch-cloud-azure) plugin. When the repository-azure plugin is set to log at TRACE level Azure credentials can be inadvertently logged.
Advisories
Source ID Title
EUVD EUVD EUVD-2018-15614 A sensitive data disclosure flaw was found in the Elasticsearch repository-azure (formerly elasticsearch-cloud-azure) plugin. When the repository-azure plugin is set to log at TRACE level Azure credentials can be inadvertently logged.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: elastic

Published:

Updated: 2024-08-05T04:57:23.966Z

Reserved: 2018-01-02T00:00:00

Link: CVE-2018-3827

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2018-09-19T19:29:00.767

Modified: 2024-11-21T04:06:06.827

Link: CVE-2018-3827

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.