~ubuntu-security/ubuntu-cve-tracker/master

« back to all changes in this revision

Viewing changes to retired/CVE-2013-0212

  • Committer: Steve Beattie
  • Date: 2019-02-19 06:18:27 UTC
  • Revision ID: sbeattie@ubuntu.com-20190219061827-oh57fzcfc1u9dlfk
The ubuntu-cve-tracker project has been converted to git.

Please use 'git clone https://git.launchpad.net/ubuntu-cve-tracker' to
get the converted tree.

Show diffs side-by-side

added added

removed removed

Lines of Context:
1
 
PublicDateAtUSN: 2013-01-29 15:00:00 UTC
2
 
Candidate: CVE-2013-0212
3
 
CRD: 2013-01-29 15:00:00 UTC
4
 
PublicDate: 2013-02-24
5
 
References: 
6
 
 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0212
7
 
 https://usn.ubuntu.com/usn/usn-1710-1
8
 
Description:
9
 
 store/swift.py in OpenStack Glance Essex (2012.1), Folsom (2012.2) before
10
 
 2012.2.3, and Grizzly, when in Swift single tenant mode, logs the Swift
11
 
 endpoint's user name and password in cleartext when the endpoint is
12
 
 misconfigured or unusable, allows remote authenticated users to obtain
13
 
 sensitive information by reading the error messages.
14
 
Ubuntu-Description: 
15
 
Notes: 
16
 
Bugs: 
17
 
 https://launchpad.net/bugs/1098962
18
 
Priority: medium
19
 
Discovered-by: Dan Prince
20
 
Assigned-to: jdstrand
21
 
 
22
 
Patches_glance:
23
 
upstream_glance: needs-triage
24
 
hardy_glance: DNE
25
 
lucid_glance: DNE
26
 
oneiric_glance: released (2011.3-0ubuntu4.2)
27
 
precise_glance: released (2012.1.3+stable~20120821-120fcf-0ubuntu1.3)
28
 
quantal_glance: released (2012.2.1-0ubuntu1.1)
29
 
devel_glance: released (2013.1~g2-0ubuntu2)