CVE-2019-0741High

Azure IoT Java SDK Information Disclosure Vulnerability

Published
February 12, 2019
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

An information disclosure vulnerability exists in the way Azure IoT Java SDK logs sensitive information. An attacker can exploit this vulnerability if a user has exposed the logs on the internet (or an attacker was able to get the logs) and can use this information to compromise the device. This update addresses this vulnerability by not storing sensitive information in the logs.

🎯 Affected products1

  • Java SDK for Azure IoT

✅ Remediation

KBRelease Notes (Security Update)

🔗 References (2)