journalpump is a daemon that takes log messages from journald and pumps them to a given output. A logging vulnerability was found in journalpump which logs out the configuration of a service integration in plaintext to the supplied logging pipeline, including credential information contained in the configuration if any. The problem has been patched in journalpump 2.5.0.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: GitHub_M
Published: 2023-12-20T23:27:10.958Z
Updated: 2023-12-20T23:27:10.958Z
Reserved: 2023-12-18T19:35:29.004Z
Link: CVE-2023-51390
JSON object: View
NVD Information
Status : Analyzed
Published: 2023-12-21T00:15:26.163
Modified: 2024-01-02T16:25:35.387
Link: CVE-2023-51390
JSON object: View
Redhat Information
No data.