CVE-2017-7214

Severity CVSS v4.0:
Pending analysis
Type:
CWE-532 Information Exposure Through Log Files
Publication date:
21/03/2017
Last modified:
20/04/2025

Description

An issue was discovered in exception_wrapper.py in OpenStack Nova 13.x through 13.1.3, 14.x through 14.0.4, and 15.x through 15.0.1. Legacy notification exception contexts appearing in ERROR level logs may include sensitive information such as account passwords and authorization tokens.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:openstack:nova:13.0.0:*:*:*:*:*:*:*
cpe:2.3:a:openstack:nova:13.1.0:*:*:*:*:*:*:*
cpe:2.3:a:openstack:nova:13.1.1:*:*:*:*:*:*:*
cpe:2.3:a:openstack:nova:13.1.2:*:*:*:*:*:*:*
cpe:2.3:a:openstack:nova:13.1.3:*:*:*:*:*:*:*
cpe:2.3:a:openstack:nova:14.0.0:*:*:*:*:*:*:*
cpe:2.3:a:openstack:nova:14.0.1:*:*:*:*:*:*:*
cpe:2.3:a:openstack:nova:14.0.2:*:*:*:*:*:*:*
cpe:2.3:a:openstack:nova:14.0.3:*:*:*:*:*:*:*
cpe:2.3:a:openstack:nova:14.0.4:*:*:*:*:*:*:*
cpe:2.3:a:openstack:nova:15.0.0:*:*:*:*:*:*:*
cpe:2.3:a:openstack:nova:15.0.1:*:*:*:*:*:*:*