CVE-2017-2592MEDIUMCVSS 5.9fixed in python-oslo.middleware 3.19.0-3 (bookworm)2017
CVE-2017-2592 [MEDIUM] CVE-2017-2592: python-oslo.middleware - python-oslo-middleware before versions 3.8.1, 3.19.1, 3.23.1 is vulnerable to an...
python-oslo-middleware before versions 3.8.1, 3.19.1, 3.23.1 is vulnerable to an information disclosure. Software using the CatchError class could include sensitive values in a traceback's error message. System users could exploit this flaw to obtain sensitive information from OpenStack component error logs (for example, keystone tokens).
Scope: local
debian