CVE-2013-0212

NameCVE-2013-0212
Descriptionstore/swift.py in OpenStack Glance Essex (2012.1), Folsom (2012.2) before 2012.2.3, and Grizzly, when in Swift single tenant mode, logs the Swift endpoint's user name and password in cleartext when the endpoint is misconfigured or unusable, allows remote authenticated users to obtain sensitive information by reading the error messages.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
glance (PTS)jessie2014.1.3-12+deb8u1fixed
stretch2:13.0.0-4fixed
buster (security), buster, buster (lts)2:17.0.0-5+deb10u1fixed
bullseye2:21.0.0-2+deb11u1fixed
bullseye (security)2:21.1.0-1+deb11u2fixed
bookworm (security), bookworm2:25.1.0-2+deb12u1fixed
sid, trixie2:29.0.0-1fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
glancesource(unstable)2012.1.1-4

Search for package or bug name: Reporting problems