Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:4405
HistoryJun 08, 2017 - 6:50 a.m.

Permission Checking Bypass

2017-06-0806:50:16
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6

0.001 Low

EPSS

Percentile

29.7%

ranger is vulnerable to permission checking bypass. The vulnerability exists because RangerHiveAuthorizer.java fails to check for RWX permissions when an external location is used to create hive tables.

CPENameOperatorVersion
rangerle0.7.0
hive security pluginle0.7.0

0.001 Low

EPSS

Percentile

29.7%

Related for VERACODE:4405