Bugzilla – Bug 1219457
VUL-0: CVE-2024-1141: python-glance_store: glance-store: Glance Store access key logged in DEBUG log level
Last modified: 2024-07-09 09:18:30 UTC
A vulnerability was found in python-glance-store. The issue occurs when the package logs the access_key for the glance-store when the DEBUG log level is enabled. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2024-1141 https://bugzilla.redhat.com/show_bug.cgi?id=2258836 https://www.cve.org/CVERecord?id=CVE-2024-1141 https://access.redhat.com/security/cve/CVE-2024-1141
SOC products are under LTSS, it means that only CVE's with a cvss score higher than 7 are considered to be fixed, which is not the case of this one. NO action from SOC side. Back to Security team.
closing