CVE-2014-5038
EUVD-2014-493707.11.2014, 19:55
Eucalyptus 3.0.0 through 4.0.1, when the log level is set to DEBUG or lower, logs user and system passwords, which allows local users to obtain sensitive information by reading the cloud log files.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| eucalyptus | eucalyptus | 3.0 |
| eucalyptus | eucalyptus | 3.0.1 |
| eucalyptus | eucalyptus | 3.1.0 |
| eucalyptus | eucalyptus | 3.1.1 |
| eucalyptus | eucalyptus | 3.1.2 |
| eucalyptus | eucalyptus | 3.2.0 |
| eucalyptus | eucalyptus | 3.2.1 |
| eucalyptus | eucalyptus | 3.2.2 |
| eucalyptus | eucalyptus | 3.3.0 |
| eucalyptus | eucalyptus | 3.3.1 |
| eucalyptus | eucalyptus | 3.3.2 |
| eucalyptus | eucalyptus | 3.4.0 |
| eucalyptus | eucalyptus | 3.4.1 |
| eucalyptus | eucalyptus | 3.4.2 |
| eucalyptus | eucalyptus | 3.4.3 |
| eucalyptus | eucalyptus | 4.0.0 |
| eucalyptus | eucalyptus | 4.0.1 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Common Weakness Enumeration