UBUNTU-CVE-2019-3866

Source
https://ubuntu.com/security/CVE-2019-3866
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-3866.json
JSON Data
https://api.osv.dev/v1/vulns/UBUNTU-CVE-2019-3866
Related
Published
2019-11-08T15:15:00Z
Modified
2024-10-15T14:07:18Z
Severity
  • 5.5 (Medium) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
[none]
Details

An information-exposure vulnerability was discovered where openstack-mistral's undercloud log files containing clear-text information were made world readable. A malicious system user could exploit this flaw to access sensitive user information.

References

Affected packages

Ubuntu:Pro:16.04:LTS / mistral

Package

Name
mistral
Purl
pkg:deb/ubuntu/mistral?arch=src?distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.0.0-1
1.0.0-4

2.*

2.0.0~b3-3
2.0.0~rc1-1
2.0.0~rc2-1
2.0.0-1
2.0.0-1ubuntu2

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:Pro:18.04:LTS / mistral

Package

Name
mistral
Purl
pkg:deb/ubuntu/mistral?arch=src?distro=esm-apps/bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

5.*

5.0.0-0ubuntu1

6.*

6.0.0~b1-0ubuntu1
6.0.0~b1-0ubuntu2
6.0.0~b2-0ubuntu1
6.0.0~rc1-0ubuntu1
6.0.0-0ubuntu1
6.0.0-0ubuntu1.1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:20.04:LTS / mistral

Package

Name
mistral
Purl
pkg:deb/ubuntu/mistral?arch=src?distro=focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

9.*

9.0.0-0ubuntu1

10.*

10.0.0~b1~git2019121815.bc46b29f-0ubuntu1
10.0.0~b2~git2020020609.5b5576dd-0ubuntu1
10.0.0~b3~git2020032611.8a5d35ac-0ubuntu1
10.0.0~b3~git2020041013.a7da00d7-0ubuntu1
10.0.0-0ubuntu0.20.04.1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:22.04:LTS / mistral

Package

Name
mistral
Purl
pkg:deb/ubuntu/mistral?arch=src?distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

13.*

13.0.0-0ubuntu1
13.0.0+git2021120910.b2d6de56-0ubuntu1
13.0.0+git2022030313.55bb2564-0ubuntu1

14.*

14.0.0-0ubuntu1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:24.10 / mistral

Package

Name
mistral
Purl
pkg:deb/ubuntu/mistral?arch=src?distro=oracular

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

18.*

18.0.1-0ubuntu1
18.0.1+git2024080716.0e03f2db-0ubuntu1

19.*

19.0.0~rc1-0ubuntu1
19.0.0-0ubuntu1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:24.04:LTS / mistral

Package

Name
mistral
Purl
pkg:deb/ubuntu/mistral?arch=src?distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

17.*

17.0.0-0ubuntu1

18.*

18.0.0~rc1-0ubuntu1
18.0.1-0ubuntu1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}