[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249461

 
 

909

 
 

195508

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2018-16889 -- ceph

ID: oval:org.secpod.oval:def:1900118Date: (C)2019-02-28   (M)2023-12-20
Class: VULNERABILITYFamily: unix




Ceph does not properly sanitize encryption keys in debug logging for v4auth. This results in the leaking of encryption key information in log files via plaintext. Versions up to v13.2.4 are vulnerable.

Platform:
Ubuntu 16.04
Ubuntu 18.04
Product:
ceph
Reference:
CVE-2018-16889
CVE    1
CVE-2018-16889
CPE    4
cpe:/o:ubuntu:ubuntu_linux:16.04
cpe:/o:ubuntu:ubuntu_linux:18.04
cpe:/o:ubuntu:ubuntu_linux:18.10
cpe:/a:ceph:ceph
...

© SecPod Technologies