DirectorySecurity Advisories
Sign In
Security Advisories

CGA-r3m6-j9rf-6qrg

Published

Last updated

https://images.chainguard.dev/security/CGA-r3m6-j9rf-6qrg
Package

jaeger-agent

Latest Update
Not affected
Aliases
  • CVE-2020-10750
  • GHSA-gh32-pc56-4c96

Severity

5.5

Medium

CVSS V3

Summary

Information Exposure in jaeger

Description

Sensitive information written to a log file vulnerability was found in jaegertracing/jaeger before version 1.18.1 when the Kafka data store is used. This flaw allows an attacker with access to the container's log file to discover the Kafka credentials.

References

Updates


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images