Lucene search

K
ubuntucveUbuntu.comUB:CVE-2017-9803
HistorySep 18, 2017 - 12:00 a.m.

CVE-2017-9803

2017-09-1800:00:00
ubuntu.com
ubuntu.com
7

CVSS2

6

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:S/C:P/I:P/A:P

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

25.2%

Apache Solr’s Kerberos plugin can be configured to use delegation tokens,
which allows an application to reuse the authentication of an end-user or
another application. There are two issues with this functionality (when
using SecurityAwareZkACLProvider type of ACL provider e.g.
SaslZkACLProvider). Firstly, access to the security configuration can be
leaked to users other than the solr super user. Secondly, malicious users
can exploit this leaked configuration for privilege escalation to further
expose/modify private data and/or disrupt operations in the Solr cluster.
The vulnerability is fixed from Apache Solr 6.6.1 onwards.

Notes

Author Note
mdeslaur introduced in 6.2

CVSS2

6

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

SINGLE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:S/C:P/I:P/A:P

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H

EPSS

0.001

Percentile

25.2%