ZeroHour

CVE-2018-11767

CVSS 3.0
7.4 high
EPSS
4%p89
Published
()
Modified
Description

In Apache Hadoop 2.9.0 to 2.9.1, 2.8.3 to 2.8.4, 2.7.5 to 2.7.6, KMS blocking users or granting access to users incorrectly, if the system uses non-default groups mapping mechanisms.

Vendors
apache
Products
hadoop
Weakness
CWE-269
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:H

In the news

No ingested article mentions this CVE yet.