CVE-2019-14433
Summary
| CVE | CVE-2019-14433 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2019-08-09 19:15:00 UTC |
| Updated | 2022-10-27 16:01:00 UTC |
| Description | An issue was discovered in OpenStack Nova before 17.0.12, 18.x before 18.2.2, and 19.x before 19.0.2. If an API request from an authenticated user ends in a fault condition due to an external exception, details of the underlying environment may be leaked in the response, and could include sensitive configuration or other data. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Red Hat Customer Portal |
REDHAT |
access.redhat.com |
|
| USN-4104-1: Nova vulnerability | Ubuntu security notices | Ubuntu |
UBUNTU |
usn.ubuntu.com |
|
| oss-security - [OSSA-2019-003] Nova Server Resource Faults Leak External Exception
Details (CVE-2019-14433) |
MLIST |
www.openwall.com |
Mailing List, Third Party Advisory |
| Red Hat Customer Portal - Access to 24x7 support and knowledge |
REDHAT |
access.redhat.com |
|
| Red Hat Customer Portal - Access to 24x7 support and knowledge |
REDHAT |
access.redhat.com |
|
| [SECURITY] [DLA 3109-1] nova security update |
MLIST |
lists.debian.org |
|
| Bug #1837877 “[OSSA-2019-003] Nova Server Resource Faults Leak E...” : Bugs : OpenStack Compute (nova) |
MISC |
launchpad.net |
Issue Tracking, Patch, Third Party Advisory |
| OpenStack Docs: OSSA-2019-003: Nova Server Resource Faults Leak External Exception Details |
CONFIRM |
security.openstack.org |
Patch, Vendor Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 181055 Debian Security Update for nova (DLA 3109-1)