CVE-2023-45875: Infoleak
Published Nov 8, 2023
·Updated
An issue was discovered in Couchbase Server 7.2.0. There is a private key leak in debug.log while adding a pre-7.0 node to a 7.2 cluster.
Affected Software
1 affected component
Couchbase Couchbase Server=7.2.0
Event History
Nov 8, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-45875?
The severity of CVE-2023-45875 is high, with a severity value of 7.5.
2
What is affected by CVE-2023-45875?
Couchbase Server 7.2.0 is affected by CVE-2023-45875.
3
How does CVE-2023-45875 impact Couchbase Server?
CVE-2023-45875 exposes a private key leak in debug.log when adding a pre-7.0 node to a 7.2 cluster.
4
Is there a fix available for CVE-2023-45875?
Yes, the fix for CVE-2023-45875 is available in the latest version of Couchbase Server.
5
Where can I find more information about CVE-2023-45875?
You can find more information about CVE-2023-45875 in the Couchbase forums, release notes, and alerts page.