A vulnerability was found in python-glance-store. The issue occurs when the package logs the access_key for the glance-store when the DEBUG log level is enabled.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-0752 | A vulnerability was found in python-glance-store. The issue occurs when the package logs the access_key for the glance-store when the DEBUG log level is enabled. |
Github GHSA |
GHSA-wgpq-p2hm-56v9 | glance-store logs s3 access keys |
Ubuntu USN |
USN-6630-1 | Glance_store vulnerability |
Fixes
Solution
No solution given by the vendor.
Workaround
Avoid leaving the DEBUG log level enabled in critical environments.
References
History
Wed, 06 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2025-10-10T00:02:20.792Z
Reserved: 2024-02-01T00:47:57.686Z
Link: CVE-2024-1141
Updated: 2024-08-01T18:26:30.566Z
Status : Modified
Published: 2024-02-01T15:15:08.547
Modified: 2024-11-21T08:49:53.540
Link: CVE-2024-1141
OpenCVE Enrichment
No data.
EUVD
Github GHSA
Ubuntu USN