{"id":"CVE-2022-0718","details":"A flaw was found in python-oslo-utils. Due to improper parsing, passwords with a double quote ( \" ) in them cause incorrect masking in debug logs, causing any part of the password after the double quote to be plaintext.","aliases":["GHSA-wmqq-r32m-87c5","PYSEC-2022-258"],"modified":"2026-08-12T03:51:47.644142194Z","published":"2022-08-29T14:03:04Z","related":["SUSE-SU-2025:02448-1"],"database_specific":{"cna_assigner":"redhat","cwe_ids":["CWE-522"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/0xxx/CVE-2022-0718.json","unresolved_ranges":[{"source":"AFFECTED_FIELD","extracted_events":[{"introduced":"Affects all versions, Fixed in 4.10.1, 4.12.1."},{"last_affected":"Affects all versions, Fixed in 4.10.1, 4.12.1."}]}]},"references":[{"type":"WEB","url":"https://access.redhat.com/security/cve/CVE-2022-0718"},{"type":"WEB","url":"https://bugs.launchpad.net/oslo.utils/+bug/1949623"},{"type":"WEB","url":"https://opendev.org/openstack/oslo.utils/commit/6e17ae1f7959c64dfd20a5f67edf422e702426aa"},{"type":"WEB","url":"https://security-tracker.debian.org/tracker/CVE-2022-0718"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2022/0xxx/CVE-2022-0718.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2022-0718"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=2056850"},{"type":"ARTICLE","url":"https://lists.debian.org/debian-lts-announce/2022/09/msg00015.html"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/openstack/oslo.utils","events":[{"introduced":"0"},{"fixed":"5ce8a7f0f8ecec7a85a23ec3d7a7fb1cad14ceba"},{"introduced":"3b5eebdc1c8606552ca00cff8f675f556e076d0e"},{"last_affected":"3b5eebdc1c8606552ca00cff8f675f556e076d0e"}],"database_specific":{"extracted_events":[{"introduced":"0"},{"fixed":"4.10.1"},{"introduced":"4.12.0"},{"last_affected":"4.12.0"}],"source":["CPE_RANGE","CPE_STRING"],"cpe":["cpe:2.3:a:openstack:oslo.utils:*:*:*:*:*:*:*:*","cpe:2.3:a:openstack:oslo.utils:4.12.0:*:*:*:*:*:*:*"]}}],"versions":["4.12.0","4.10.0","4.9.2","4.9.1","4.9.0","4.8.0","4.7.0","4.5.0","4.6.0","4.4.0","4.3.0","4.2.2","4.2.1","4.2.0","4.1.1","4.1.0","4.0.1","4.0.0","3.42.1","3.41.1","3.41.0","3.40.3","3.40.2","3.40.1","3.40.0","3.39.1","3.39.0","3.38.0","3.37.1","3.37.0","3.36.4","3.36.3","3.36.2","3.36.1","3.36.0","3.35.0","3.34.0","3.33.0","3.32.0","3.31.0","3.30.0","3.29.0","3.28.0","3.27.0","3.26.0","3.25.1","3.25.0","3.24.0","3.23.0","3.22.0","3.21.0","3.20.0","3.19.0","3.18.0","3.17.0","3.16.0","3.15.0","3.9.0","3.14.0","3.12.0","3.13.0","3.11.0","3.10.0","3.7.0","3.6.0","3.5.0","3.4.0","3.3.0","3.2.0","3.1.0","3.0.0","2.8.0","2.7.0","2.6.0","1.4.0","2.5.0","2.4.0","2.3.0","2.2.0","2.1.0","2.0.0","1.9.0","1.8.0","1.7.0","1.6.0","1.5.0","1.3.0","1.2.1","1.2.0","1.1.1","1.1.0","1.0.0","0.3.0","0.2.0","0.1.1","0.1.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-0718.json"}}],"schema_version":"1.9.0"}