Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Sensitive content disclosure via OpenTelemetry spans in AgentCore Python SDK
Vulnerability Description
AWS Bedrock AgentCore Python SDK is an open-source Python library that provides client tools for building AI agents on the Amazon Bedrock AgentCore platform.
Unintended logging of sensitive user content in the OpenTelemetry instrumentation in AWS Bedrock AgentCore Python SDK versions 1.4.8 and 1.5.0 might allow a local authenticated user with access to CloudWatch Logs to access raw user prompts and agent responses containing sensitive data via span attributes. The SDK wrote raw user prompts and complete agent responses into OpenTelemetry span attributes on every invocation without filtering or masking. These spans flow into the customer's aws/spans CloudWatch log group, exposing sensitive content to any principal with log read access.
We recommend you upgrade to version 1.5.1 or later. Users who ran affected versions should also review and purge sensitive content from their aws/spans CloudWatch log groups.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:H/I:N/A:N
Vulnerability Type
通过日志文件的信息暴露
Vulnerability Title
Amazon Bedrock AgentCore SDK 日志信息泄露漏洞
Vulnerability Description
AWS Bedrock AgentCore SDK是AWS公司开源的一个用于将本地 AI 智能体零基础设施部署到 AWS 的 SDK,支持多种开源框架,提供运行时、记忆、网关、代码解释器等企业级服务。 Amazon Bedrock AgentCore SDK 1.4.8版本和1.5.0版本存在日志信息泄露漏洞,该漏洞源于OpenTelemetry instrumentation未过滤或屏蔽原始用户提示和代理响应,可能导致本地认证用户访问CloudWatch日志中的敏感数据。
CVSS Information
N/A
Vulnerability Type
N/A