VYPR
Medium severity6.5NVD Advisory· Published Aug 9, 2019· Updated Jun 17, 2026

CVE-2019-14433

CVE-2019-14433

Description

An issue was discovered in OpenStack Nova before 17.0.12, 18.x before 18.2.2, and 19.x before 19.0.2. If an API request from an authenticated user ends in a fault condition due to an external exception, details of the underlying environment may be leaked in the response, and could include sensitive configuration or other data.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected packages

Versions sourced from the GitHub Security Advisory.

PackageAffected versionsPatched versions
novaPyPI
< 17.0.1217.0.12
novaPyPI
>= 18.0.0, < 18.2.218.2.2
novaPyPI
>= 19.0.0, < 19.0.219.0.2

Affected products

10
  • cpe:2.3:a:openstack:nova:*:*:*:*:*:*:*:*
    Range: <17.0.12
  • Red Hat/Openstack3 versions
    cpe:2.3:a:redhat:openstack:10:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:redhat:openstack:10:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:openstack:13:*:*:*:*:*:*:*
    • cpe:2.3:a:redhat:openstack:14:*:*:*:*:*:*:*
  • cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*+ 2 more
    • cpe:2.3:o:canonical:ubuntu_linux:16.04:*:*:*:esm:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
    • cpe:2.3:o:canonical:ubuntu_linux:19.04:*:*:*:*:*:*:*
  • cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
  • OpenStack/Novadescription
  • ghsa-coords
    Range: < 17.0.12

Patches

Vulnerability mechanics

References

13

News mentions

0

No linked articles in our index yet.