QID 981107
QID 981107: Java (maven) Security Update for org.apache.ranger:ranger (GHSA-ffjh-fjgg-mfpq)
In environments that use external location for hive tables, Hive Authorizer in Apache Ranger before 0.7.1 should be checking RWX permission for create table.
Successful exploitation of this vulnerability may affect the confidentiality, integrity, and availability of the targeted user.
Solution
Customers are advised to refer to GHSA-ffjh-fjgg-mfpq for updates pertaining to this vulnerability.
Vendor References
- GHSA-ffjh-fjgg-mfpq -
github.com/advisories/GHSA-ffjh-fjgg-mfpq
CVEs related to QID 981107
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| GHSA-ffjh-fjgg-mfpq | org.apache.ranger:ranger |
|