An issue was discovered in OpenStack Nova before 17.0.12, 18.x before 18.2.2, and 19.x before 19.0.2. If an API request from an authenticated user ends in a fault condition due to an external exception, details of the underlying environment may be leaked in the response, and could include sensitive configuration or other data.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
No history.
Information
Published : 2019-08-09 19:15
Updated : 2024-11-21 04:26
NVD link : CVE-2019-14433
Mitre link : CVE-2019-14433
CVE.ORG link : CVE-2019-14433
JSON object : View
Products Affected
openstack
- nova
redhat
- openstack
debian
- debian_linux
canonical
- ubuntu_linux
CWE
CWE-209
Generation of Error Message Containing Sensitive Information