{"id":"CVE-2018-16856","details":"In a default Red Hat Openstack Platform Director installation, openstack-octavia before versions openstack-octavia 2.0.2-5 and openstack-octavia-3.0.1-0.20181009115732 creates log files that are readable by all users. Sensitive information such as private keys can appear in these log files allowing for information exposure.","aliases":["GHSA-qcj3-h27m-mp9x","PYSEC-2019-193"],"modified":"2026-03-14T09:28:13.242705Z","published":"2019-03-26T18:29:00.357Z","references":[{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2018-16856"}],"affected":[{"database_specific":{"unresolved_ranges":[{"events":[{"introduced":"2.0.0"},{"fixed":"2.0.2-5"}]},{"events":[{"introduced":"3.0.0"},{"fixed":"3.0.1-0.20181009115732"}]},{"events":[{"introduced":"0"},{"last_affected":"12"}]},{"events":[{"introduced":"0"},{"last_affected":"13"}]},{"events":[{"introduced":"0"},{"last_affected":"14"}]}],"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-16856.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N"}]}