CVE-2014-7230

Currently unrated

Key Information:

Vendor
Openstack
Vendor
CVE Published:
8 October 2014

Summary

The processutils.execute function in OpenStack oslo-incubator, Cinder, Nova, and Trove before 2013.2.4 and 2014.1 before 2014.1.3 allows local users to obtain passwords from commands that cause a ProcessExecutionError by reading the log.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.