Information exposure in the logging system in Yugabyte Platform allows local attackers with access to application logs to obtain database user credentials in log files, potentially leading to unauthorized database access.
[
{
"id": "CVE-2024-0006-00506a99",
"target": {
"function": "executeNodeAction",
"file": "managed/src/main/java/com/yugabyte/yw/common/NodeUniverseManager.java"
},
"digest": {
"length": 685.0,
"function_hash": "111742172457227462524558023614276680637"
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function",
"source": "https://github.com/yugabyte/yugabyte-db/commit/439c6286f1971f9ac6bff2c7215b454c2025c593"
},
{
"id": "CVE-2024-0006-110d25e7",
"target": {
"file": "managed/src/main/java/com/yugabyte/yw/common/NodeUniverseManager.java"
},
"digest": {
"line_hashes": [
"11389920105758554944963514164263468968",
"298608128867452544279624404720296256673",
"61993129226591049064768845705770410160"
],
"threshold": 0.9
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line",
"source": "https://github.com/yugabyte/yugabyte-db/commit/d96e6b629f34d065b47204daeeb44064e484c579"
},
{
"id": "CVE-2024-0006-263a1c88",
"target": {
"file": "managed/src/main/java/com/yugabyte/yw/common/NodeUniverseManager.java"
},
"digest": {
"line_hashes": [
"11389920105758554944963514164263468968",
"298608128867452544279624404720296256673",
"61993129226591049064768845705770410160"
],
"threshold": 0.9
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line",
"source": "https://github.com/yugabyte/yugabyte-db/commit/439c6286f1971f9ac6bff2c7215b454c2025c593"
},
{
"id": "CVE-2024-0006-e2167ec6",
"target": {
"file": "managed/src/main/java/com/yugabyte/yw/common/NodeUniverseManager.java"
},
"digest": {
"line_hashes": [
"11389920105758554944963514164263468968",
"298608128867452544279624404720296256673",
"221980119070384969782492613064712299656"
],
"threshold": 0.9
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Line",
"source": "https://github.com/yugabyte/yugabyte-db/commit/5cc7f4e15d6ccccbf97c57946fd0aa630f88c9e2"
},
{
"id": "CVE-2024-0006-e54915cc",
"target": {
"function": "executeNodeAction",
"file": "managed/src/main/java/com/yugabyte/yw/common/NodeUniverseManager.java"
},
"digest": {
"length": 883.0,
"function_hash": "290145766190322001349470476105973073173"
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function",
"source": "https://github.com/yugabyte/yugabyte-db/commit/5cc7f4e15d6ccccbf97c57946fd0aa630f88c9e2"
},
{
"id": "CVE-2024-0006-eeeacbec",
"target": {
"function": "executeNodeAction",
"file": "managed/src/main/java/com/yugabyte/yw/common/NodeUniverseManager.java"
},
"digest": {
"length": 685.0,
"function_hash": "111742172457227462524558023614276680637"
},
"signature_version": "v1",
"deprecated": false,
"signature_type": "Function",
"source": "https://github.com/yugabyte/yugabyte-db/commit/d96e6b629f34d065b47204daeeb44064e484c579"
}
]