Описание
There is a race condition in OozieSharelibCLI in Apache Oozie before version 5.2.1 which allows a malicious attacker to replace the files in Oozie's sharelib during it's creation.
Ссылки
- Mailing ListThird Party Advisory
- Mailing ListVendor Advisory
- Mailing ListVendor Advisory
- Mailing ListThird Party Advisory
- Mailing ListVendor Advisory
- Mailing ListVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 5.2.1 (исключая)
cpe:2.3:a:apache:oozie:*:*:*:*:*:*:*:*
EPSS
Процентиль: 27%
0.00096
Низкий
4.7 Medium
CVSS3
1.9 Low
CVSS2
Дефекты
CWE-377
CWE-362
Связанные уязвимости
github
больше 3 лет назад
There is a race condition in OozieSharelibCLI in Apache Oozie before version 5.2.1 which allows a malicious attacker to replace the files in Oozie's sharelib during it's creation.
EPSS
Процентиль: 27%
0.00096
Низкий
4.7 Medium
CVSS3
1.9 Low
CVSS2
Дефекты
CWE-377
CWE-362