High severity7.8OSV Advisory· Published Mar 26, 2019· Updated Jun 17, 2026
CVE-2019-3830
CVE-2019-3830
Description
A vulnerability was found in ceilometer before version 12.0.0.0rc1. An Information Exposure in ceilometer-agent prints sensitive configuration data to log files without DEBUG logging being activated.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
ceilometerPyPI | < 12.0.0.0rc1 | 12.0.0.0rc1 |
Affected products
42013.1, 2013.1.rc1, 2013.2.b1, …+ 1 more
- (no CPE)range: 2013.1, 2013.1.rc1, 2013.2.b1, …
- cpe:2.3:a:openstack:ceilometer:*:*:*:*:*:*:*:*range: <=11.01
Patches
Vulnerability mechanics
References
7- bugzilla.redhat.com/show_bug.cginvdIssue TrackingPatchThird Party AdvisoryWEB
- access.redhat.com/errata/RHSA-2019:0919nvdThird Party AdvisoryWEB
- github.com/advisories/GHSA-2cvf-r9jm-4qm9ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2019-3830ghsaADVISORY
- github.com/openstack/ceilometer/commit/8881a42af169a2d7c912b1434911f978883c83f3ghsaWEB
- github.com/openstack/ceilometer/commit/8881a42af169a2d7c912b1434911f978883c83f3ghsaWEB
- github.com/pypa/advisory-database/tree/main/vulns/ceilometer/PYSEC-2019-78.yamlghsaWEB
News mentions
0No linked articles in our index yet.