4
CVSSv2

CVE-2013-0212

Published: 24/02/2013 Updated: 13/02/2023
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

store/swift.py in OpenStack Glance Essex (2012.1), Folsom (2012.2) prior to 2012.2.3, and Grizzly, when in Swift single tenant mode, logs the Swift endpoint's user name and password in cleartext when the endpoint is misconfigured or unusable, allows remote authenticated users to obtain sensitive information by reading the error messages.

Vulnerable Product Search on Vulmon Subscribe to Product

openstack image registry and delivery service \\(glance\\) 2012.2.2

openstack image registry and delivery service \\(glance\\) 2012.2.1

openstack image registry and delivery service \\(glance\\) 2012.1

openstack image registry and delivery service \\(glance\\) 2012.2

canonical ubuntu linux 11.10

canonical ubuntu linux 12.10

canonical ubuntu linux 12.04

Vendor Advisories

Synopsis Important: openstack-glance security update Type/Severity Security Advisory: Important Topic Updated openstack-glance packages that fix one security issue are nowavailable for Red Hat OpenStack FolsomThe Red Hat Security Response Team has rated this update as havingimportant security impact A Com ...
Glance could be made to expose sensitive information over the network ...

Github Repositories

CVE-2013-0212 Verison: githubcom/openstack/glance/tree/4b768a4a847a0f5c857f4fe3f3bca720da9b3949