1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
|
Candidate: CVE-2014-5038
PublicDate: 2014-11-07
References:
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-5038
https://www.eucalyptus.com/resources/security/advisories/esa-26
Description:
Eucalyptus 3.0.0 through 4.0.1, when the log level is set to DEBUG or
lower, logs user and system passwords, which allows local users to obtain
sensitive information by reading the cloud log files.
Ubuntu-Description:
Notes:
Bugs:
Priority: medium
Discovered-by:
Assigned-to:
Patches_eucalyptus:
upstream_eucalyptus: released (4.0.2)
lucid_eucalyptus: not-affected
precise_eucalyptus: ignored (reached end-of-life)
precise/esm_eucalyptus: DNE (precise was needed)
trusty_eucalyptus: DNE
utopic_eucalyptus: DNE
vivid_eucalyptus: DNE
vivid/stable-phone-overlay_eucalyptus: DNE
vivid/ubuntu-core_eucalyptus: DNE
wily_eucalyptus: DNE
xenial_eucalyptus: DNE
yakkety_eucalyptus: DNE
zesty_eucalyptus: DNE
devel_eucalyptus: DNE
|