First published: Thu Nov 21 2024(Updated: )
Heat templates for TripleO<br>Security Fix(es):<br><li> cleartext passwords exposed in logs (CVE-2024-4840)</li> For more details about the security issue(s), including the impact, a CVSS<br>score, acknowledgments, and other related information, refer to the CVE<br>page listed in the References section.
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/openstack-tripleo-heat-templates | <14.3.1-17.1.20240919130756.el9 | 14.3.1-17.1.20240919130756.el9 |
Red Hat OpenStack Services on OpenShift |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2024:9978 is determined by the CVSS score associated with the vulnerabilities it addresses.
To fix RHSA-2024:9978, upgrade the package 'openstack-tripleo-heat-templates' to version 14.3.1-17.1.20240919130756.el9 or later.
RHSA-2024:9978 addresses the vulnerability of cleartext passwords being exposed in logs, as classified under CVE-2024-4840.
RHSA-2024:9978 affects Red Hat OpenStack and specifically the 'openstack-tripleo-heat-templates' package.
The impact of RHSA-2024:9978 includes potential exposure of sensitive information due to cleartext passwords in log files.