An information-disclosure flaw was found in the way Heketi before 10.1.0 logs sensitive information. This flaw allows an attacker with local access to the Heketi server to read potentially sensitive information such as gluster-block passwords.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-5197 | An information-disclosure flaw was found in the way Heketi before 10.1.0 logs sensitive information. This flaw allows an attacker with local access to the Heketi server to read potentially sensitive information such as gluster-block passwords. |
Github GHSA |
GHSA-rm7c-x6gj-2mr8 | Heketi logs sensitive information |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-04T11:14:15.593Z
Reserved: 2020-03-20T00:00:00
Link: CVE-2020-10763
No data.
Status : Modified
Published: 2020-11-24T17:15:10.817
Modified: 2024-11-21T04:56:01.383
Link: CVE-2020-10763
OpenCVE Enrichment
No data.
EUVD
Github GHSA