journalpump is a daemon that takes log messages from journald and pumps them to a given output. A logging vulnerability was found in journalpump which logs out the configuration of a service integration in plaintext to the supplied logging pipeline, including credential information contained in the configuration if any. The problem has been patched in journalpump 2.5.0.
References
Configurations
History
No history.
Information
Published : 2023-12-21 00:15
Updated : 2024-01-02 16:25
NVD link : CVE-2023-51390
Mitre link : CVE-2023-51390
CVE.ORG link : CVE-2023-51390
JSON object : View
Products Affected
aiven
- journalpump