This issue affects Apache Hadoop: from 3.2.0 before 3.4.2.
Users are recommended to upgrade to version 3.4.2, which fixes the issue.
No analysis available yet.
No remediation available yet.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-92cc-952p-v8rh | Apache Hadoop HDFS Native Client has Out-of-bounds Write Vulnerability |
Tue, 27 Jan 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:apache:hadoop:*:*:*:*:*:*:*:* |
Tue, 27 Jan 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Apache
Apache hadoop |
|
| Vendors & Products |
Apache
Apache hadoop |
Mon, 26 Jan 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 26 Jan 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
Mon, 26 Jan 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Out-of-bounds Write vulnerability in Apache Hadoop HDFS native client. This issue affects Apache Hadoop: from 3.2.0 before 3.4.2. Users are recommended to upgrade to version 3.4.2, which fixes the issue. | |
| Title | HDFS native client: Out of bounds write in URI parser of native HDFS client | |
| Weaknesses | CWE-787 | |
| References |
|
Status: PUBLISHED
Assigner: apache
Published:
Updated: 2026-01-26T18:13:19.241Z
Reserved: 2025-03-07T17:56:36.435Z
Link: CVE-2025-27821
Updated: 2026-01-26T10:08:17.750Z
Status : Analyzed
Published: 2026-01-26T10:16:05.033
Modified: 2026-01-27T20:30:26.927
Link: CVE-2025-27821
No data.
OpenCVE Enrichment
Updated: 2026-01-27T20:17:54Z
Github GHSA