Openstack · Openstack Nova · CVE-2017-7214
**Name of the Vulnerable Software and Affected Versions**
OpenStack Nova versions 13.x through 13.1.3
OpenStack Nova versions 14.x through 14.0.4
OpenStack Nova versions 15.x through 15.0.1
**Description**
An issue in exception wrapper.py may cause legacy notification exception contexts to include sensitive information, such as account passwords and authorization tokens, in ERROR level logs.
**Recommendations**
For versions 13.x through 13.1.3, update to a version later than 13.1.3 to resolve the issue.
For versions 14.x through 14.0.4, update to a version later than 14.0.4 to resolve the issue.
For versions 15.x through 15.0.1, update to a version later than 15.0.1 to resolve the issue.