MySQL for PCF tiles 1.7.x before 1.7.10 were discovered to log the AWS access key in plaintext. These credentials were logged to the Service Backup component logs, and not the system log, thus were not exposed outside the Service Backup VM.
References
Link Resource
http://www.securityfocus.com/bid/95146 Third Party Advisory VDB Entry
https://pivotal.io/security/cve-2016-0898 Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: dell

Published: 2018-03-29T22:00:00

Updated: 2018-03-30T09:57:02

Reserved: 2015-12-17T00:00:00


Link: CVE-2016-0898

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-03-29T22:29:00.260

Modified: 2021-09-09T17:33:11.207


Link: CVE-2016-0898

JSON object: View

cve-icon Redhat Information

No data.