CVE-2018-11777
08.11.2018, 14:29
In Apache Hive 2.3.3, 3.1.0 and earlier, local resources on HiveServer2 machines are not properly protected against malicious user if ranger, sentry or sql standard authorizer is not in use.Enginsight
Vendor | Product | Version |
---|---|---|
apache | hive | 𝑥 ≤ 2.3.3 |
apache | hive | 3.0.0 ≤ 𝑥 ≤ 3.1.0 |
𝑥
= Vulnerable software versions
References