OpenStack Ceilometer 2013.2 Release Candidate 2

CPE Details

OpenStack Ceilometer 2013.2 Release Candidate 2
2013.2
2019-08-01
12h50 +00:00
2019-08-01
12h50 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:a:openstack:ceilometer:2013.2:rc2:*:*:*:*:*:*

Informations

Vendor

openstack

Product

ceilometer

Version

2013.2

Update

rc2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2019-3830 2019-03-26 16h55 +00:00 A vulnerability was found in ceilometer before version 12.0.0.0rc1. An Information Exposure in ceilometer-agent prints sensitive configuration data to log files without DEBUG logging being activated.
7.8
High
CVE-2013-6384 2013-11-23 17h00 +00:00 (1) impl_db2.py and (2) impl_mongodb.py in OpenStack Ceilometer 2013.2 and earlier, when the logging level is set to INFO, logs the connection string from ceilometer.conf, which allows local users to obtain sensitive information (the DB2 or MongoDB password) by reading the log file.
1.9