Sensitive information written to a log file vulnerability was found in jaegertracing/jaeger before version 1.18.1 when the Kafka data store is used. This flaw allows an attacker with access to the container's log file to discover the Kafka credentials.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-1078 | Sensitive information written to a log file vulnerability was found in jaegertracing/jaeger before version 1.18.1 when the Kafka data store is used. This flaw allows an attacker with access to the container's log file to discover the Kafka credentials. |
Github GHSA |
GHSA-gh32-pc56-4c96 | Information Exposure in jaeger |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-04T11:14:15.575Z
Reserved: 2020-03-20T00:00:00
Link: CVE-2020-10750
No data.
Status : Modified
Published: 2020-06-19T20:15:12.867
Modified: 2024-11-21T04:55:59.463
Link: CVE-2020-10750
OpenCVE Enrichment
No data.
EUVD
Github GHSA