CVE-2018-11768
04.10.2019, 14:15
In Apache Hadoop 3.1.0 to 3.1.1, 3.0.0-alpha1 to 3.0.3, 2.9.0 to 2.9.1, and 2.0.0-alpha to 2.8.4, the user/group information can be corrupted across storing in fsimage and reading back from fsimage.Enginsight
Vendor | Product | Version |
---|---|---|
apache | hadoop | 2.2.0 ≤ 𝑥 ≤ 2.8.4 |
apache | hadoop | 2.9.0 ≤ 𝑥 ≤ 2.9.1 |
apache | hadoop | 3.0.1 ≤ 𝑥 ≤ 3.0.3 |
apache | hadoop | 3.1.0 ≤ 𝑥 ≤ 3.1.1 |
apache | hadoop | 2.0.0 |
apache | hadoop | 2.0.0:alpha |
apache | hadoop | 2.0.1 |
apache | hadoop | 2.0.1:alpha |
apache | hadoop | 2.0.2 |
apache | hadoop | 2.0.2:alpha |
apache | hadoop | 2.0.3 |
apache | hadoop | 2.0.3:alpha |
apache | hadoop | 2.0.4 |
apache | hadoop | 2.0.4:alpha |
apache | hadoop | 2.0.5 |
apache | hadoop | 2.0.5:alpha |
apache | hadoop | 2.0.6 |
apache | hadoop | 2.0.6:alpha |
apache | hadoop | 2.1.0 |
apache | hadoop | 2.1.0:beta |
apache | hadoop | 2.1.1:beta |
apache | hadoop | 3.0.0 |
apache | hadoop | 3.0.0:alpha1 |
apache | hadoop | 3.0.0:alpha2 |
apache | hadoop | 3.0.0:alpha3 |
apache | hadoop | 3.0.0:alpha4 |
apache | hadoop | 3.0.0:beta1 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References