Description
In Apache Hadoop 2.8.0, 3.0.0-alpha1, and 3.0.0-alpha2, the LinuxContainerExecutor runs docker commands as root with insufficient input validation. When the docker feature is enabled, authenticated users can run commands as root.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-4041 | In Apache Hadoop 2.8.0, 3.0.0-alpha1, and 3.0.0-alpha2, the LinuxContainerExecutor runs docker commands as root with insufficient input validation. When the docker feature is enabled, authenticated users can run commands as root. |
Github GHSA |
GHSA-h24p-qwf4-84q8 | Apache Hadoop's LinuxContainerExecutor runs docker commands as root with insufficient input validation |
References
History
No history.
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-08-05T16:12:27.980Z
Reserved: 2017-04-11T00:00:00.000Z
Link: CVE-2017-7669
No data.
Status : Deferred
Published: 2017-06-05T01:29:00.537
Modified: 2025-04-20T01:37:25.860
Link: CVE-2017-7669
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA