Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-gf2v-9hp6-44qg

Опубликовано: 14 мар. 2019
Источник: github
Github: Прошло ревью
CVSS3: 7.5

Описание

org.apache.hive:hive, org.apache.hive:hive-exec, and org.apache.hive:hive-service vulnerable to Improper Certificate Validation

Apache Hive (JDBC + HiveServer2) implements SSL for plain TCP and HTTP connections (it supports both transport modes). While validating the server's certificate during the connection setup, the client in Apache Hive before 1.2.2 and 2.0.x before 2.0.1 doesn't seem to be verifying the common name attribute of the certificate. In this way, if a JDBC client sends an SSL request to server abc.com, and the server responds with a valid certificate (certified by CA) but issued to xyz.com, the client will accept that as a valid certificate and the SSL handshake will go through.

Пакеты

Наименование

org.apache.hive:hive

maven
Затронутые версииВерсия исправления

< 1.2.2

1.2.2

Наименование

org.apache.hive:hive

maven
Затронутые версииВерсия исправления

= 2.0.0

2.0.1

Наименование

org.apache.hive:hive-service

maven
Затронутые версииВерсия исправления

< 1.2.2

1.2.2

Наименование

org.apache.hive:hive-service

maven
Затронутые версииВерсия исправления

= 2.0.0

2.0.1

Наименование

org.apache.hive:hive-exec

maven
Затронутые версииВерсия исправления

< 1.2.2

1.2.2

Наименование

org.apache.hive:hive-exec

maven
Затронутые версииВерсия исправления

= 2.0.0

2.0.1

EPSS

Процентиль: 43%
0.00206
Низкий

7.5 High

CVSS3

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 7.5
nvd
больше 8 лет назад

Apache Hive (JDBC + HiveServer2) implements SSL for plain TCP and HTTP connections (it supports both transport modes). While validating the server's certificate during the connection setup, the client in Apache Hive before 1.2.2 and 2.0.x before 2.0.1 doesn't seem to be verifying the common name attribute of the certificate. In this way, if a JDBC client sends an SSL request to server abc.com, and the server responds with a valid certificate (certified by CA) but issued to xyz.com, the client will accept that as a valid certificate and the SSL handshake will go through.

EPSS

Процентиль: 43%
0.00206
Низкий

7.5 High

CVSS3

Дефекты

CWE-295