ISOMAN

CVE

CVE-2019-14433

An issue was discovered in OpenStack Nova before 17.0.12, 18.x before 18.2.2, and 19.x before 19.0.2. If an API request from an authenticated user ends in a fault condition due to an external exception, details of the underlying environment may be leaked in the response, and could include sensitive configuration or other data.

Severity
MEDIUM
CVSS
6.5
Published
Modified

Linked Releases

DistributionReleaseStatusEvidence
Ubuntu18.04.6 amd64 desktopunknownsource
Ubuntu18.04.6 amd64 live-serverunknownsource

References

  1. http://www.openwall.com/lists/oss-security/2019/08/06/6
  2. https://access.redhat.com/errata/RHSA-2019:2622
  3. https://access.redhat.com/errata/RHSA-2019:2631
  4. https://access.redhat.com/errata/RHSA-2019:2652
  5. https://launchpad.net/bugs/1837877
  6. https://lists.debian.org/debian-lts-announce/2022/09/msg00018.html
  7. https://security.openstack.org/ossa/OSSA-2019-003.html
  8. https://usn.ubuntu.com/4104-1/
  9. http://www.openwall.com/lists/oss-security/2019/08/06/6
  10. https://access.redhat.com/errata/RHSA-2019:2622
  11. https://access.redhat.com/errata/RHSA-2019:2631
  12. https://access.redhat.com/errata/RHSA-2019:2652
  13. https://launchpad.net/bugs/1837877
  14. https://lists.debian.org/debian-lts-announce/2022/09/msg00018.html
  15. https://security.openstack.org/ossa/OSSA-2019-003.html
  16. https://usn.ubuntu.com/4104-1/