Lucene search

K
cvelistApacheCVELIST:CVE-2016-3086
HistoryJan 10, 2017 - 12:00 a.m.

CVE-2016-3086

2017-01-1000:00:00
apache
www.cve.org
1

9.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

30.7%

The YARN NodeManager in Apache Hadoop 2.6.x before 2.6.5 and 2.7.x before 2.7.3 can leak the password for credential store provider used by the NodeManager to YARN Applications.

CNA Affected

[
  {
    "product": "Apache Hadoop",
    "vendor": "Apache Software Foundation",
    "versions": [
      {
        "status": "affected",
        "version": "2.6.0 to 2.6.4"
      },
      {
        "status": "affected",
        "version": "2.7.0 to 2.7.2"
      }
    ]
  }
]

9.5 High

AI Score

Confidence

High

0.001 Low

EPSS

Percentile

30.7%