In Apache Hive 2.3.3, 3.1.0 and earlier, local resources on HiveServer2 machines are not properly protected against malicious user if ranger, sentry or sql standard authorizer is not in use.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-0775 | In Apache Hive 2.3.3, 3.1.0 and earlier, local resources on HiveServer2 machines are not properly protected against malicious user if ranger, sentry or sql standard authorizer is not in use. |
Github GHSA |
GHSA-rrfq-g5fq-fc9c | Improper Authentication in hive:hive-exec |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2024-08-05T08:17:09.136Z
Reserved: 2018-06-05T00:00:00
Link: CVE-2018-11777
No data.
Status : Modified
Published: 2018-11-08T14:29:00.197
Modified: 2024-11-21T03:44:00.963
Link: CVE-2018-11777
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA