5
CVSSv2

CVE-2018-16856

Published: 26/03/2019 Updated: 04/08/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

In a default Red Hat Openstack Platform Director installation, openstack-octavia prior to openstack-octavia 2.0.2-5 and openstack-octavia-3.0.1-0.20181009115732 creates log files that are readable by all users. Sensitive information such as private keys can appear in these log files allowing for information exposure.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

openstack octavia

redhat openstack 13

redhat openstack 14

redhat openstack 12

Vendor Advisories

Synopsis Moderate: openstack-octavia security update Type/Severity Security Advisory: Moderate Topic An update for openstack-octavia is now available for Red Hat OpenStack Platform 140 (Rocky)Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vulnerability Sco ...
Synopsis Moderate: openstack-octavia security and bug fix update Type/Severity Security Advisory: Moderate Topic An update for openstack-octavia is now available for Red Hat OpenStack Platform 130 (Queens)Red Hat Product Security has rated this update as having a security impact of Moderate A Common Vuln ...