Safety vulnerability ID: 50790
The information on this page was manually curated by our Cybersecurity Intelligence Team.
Tripleo-heat-templates 9.4.1 and 10.6.1 include a fix for CVE-2021-3585: Plain passwords from RHSM exist in the logs during OSP13 deployment with subscription-manager.
Latest version: 18.0.0
Heat templates for deploying OpenStack with OpenStack.
A flaw was found in openstack-tripleo-heat-templates. Plain passwords from RHSM exist in the logs during OSP13 deployment with subscription-manager. See CVE-2021-3585.
MISC:https://access.redhat.com/security/cve/CVE-2021-3585: https://access.redhat.com/security/cve/CVE-2021-3585
MISC:https://bugs.launchpad.net/tripleo/+bug/1931132: https://bugs.launchpad.net/tripleo/+bug/1931132
MISC:https://bugzilla.redhat.com/show_bug.cgi?id=1961709: https://bugzilla.redhat.com/show_bug.cgi?id=1961709
MISC:https://bugzilla.redhat.com/show_bug.cgi?id=1968247: https://bugzilla.redhat.com/show_bug.cgi?id=1968247
MISC:https://review.opendev.org/c/openstack/tripleo-heat-templates/+/791988: https://review.opendev.org/c/openstack/tripleo-heat-templates/+/791988
Scan your Python project for dependency vulnerabilities in two minutes
Scan your application