← Back to CVE List

CVE-2017-2592

Published: 2018-05-08T17:29Z
Last Modified: 2024-11-21T03:23Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
python-oslo-middleware before versions 3.8.1, 3.19.1, 3.23.1 is vulnerable to an information disclosure. Software using the CatchError class could include sensitive values in a traceback's error message. System users could exploit this flaw to obtain sensitive information from OpenStack component error logs (for example, keystone tokens). > MITRE Terms of Use apply – see LICENSE‑MITRE.txt