Логотип exploitDog
bind:CVE-2014-3627
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2014-3627

Количество 3

Количество 3

redhat логотип

CVE-2014-3627

около 11 лет назад

The YARN NodeManager daemon in Apache Hadoop 0.23.0 through 0.23.11 and 2.x before 2.5.2, when using Kerberos authentication, allows remote cluster users to change the permissions of certain files to world-readable via a symlink attack in a public tar archive, which is not properly handled during localization, related to distributed cache.

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2014-3627

около 11 лет назад

The YARN NodeManager daemon in Apache Hadoop 0.23.0 through 0.23.11 and 2.x before 2.5.2, when using Kerberos authentication, allows remote cluster users to change the permissions of certain files to world-readable via a symlink attack in a public tar archive, which is not properly handled during localization, related to distributed cache.

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-jpmf-8cj2-595g

больше 3 лет назад

Improper Link Resolution Before File Access in Apache Hadoop

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2014-3627

The YARN NodeManager daemon in Apache Hadoop 0.23.0 through 0.23.11 and 2.x before 2.5.2, when using Kerberos authentication, allows remote cluster users to change the permissions of certain files to world-readable via a symlink attack in a public tar archive, which is not properly handled during localization, related to distributed cache.

CVSS2: 6.4
2%
Низкий
около 11 лет назад
nvd логотип
CVE-2014-3627

The YARN NodeManager daemon in Apache Hadoop 0.23.0 through 0.23.11 and 2.x before 2.5.2, when using Kerberos authentication, allows remote cluster users to change the permissions of certain files to world-readable via a symlink attack in a public tar archive, which is not properly handled during localization, related to distributed cache.

CVSS2: 5
2%
Низкий
около 11 лет назад
github логотип
GHSA-jpmf-8cj2-595g

Improper Link Resolution Before File Access in Apache Hadoop

2%
Низкий
больше 3 лет назад

Уязвимостей на страницу