CVE-2014-1948
14.02.2014, 15:55
OpenStack Image Registry and Delivery Service (Glance) 2013.2 through 2013.2.1 and Icehouse before icehouse-2 logs a URL containing the Swift store backend password when authentication fails and WARNING level logging is enabled, which allows local users to obtain sensitive information by reading the log.Enginsight
Vendor | Product | Version |
---|---|---|
openstack | image_registry_and_delivery_service_\(glance\) | 2013.2 |
openstack | image_registry_and_delivery_service_\(glance\) | 2013.2.1 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References