PT-2017-12609 · Apache · Apache Ranger+1
Publicado
2017-11-01
·
Atualizado
2019-03-14
·
CVE-2017-12625
CVSS v3.1
4.3
Média
| Vetor | AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Apache Hive versions 2.1.x through 2.1.2
Apache Hive versions 2.2.x through 2.2.1
Apache Hive versions 2.3.x through 2.3.1
Description
The issue arises when a view is created over a table, and policy enforcement for masked columns does not occur correctly on the table. This is related to the interface that allows defining masking policies on tables or views, such as through Apache Ranger.
Recommendations
For Apache Hive versions 2.1.x through 2.1.2, update to version 2.1.2 or later.
For Apache Hive versions 2.2.x through 2.2.1, update to version 2.2.1 or later.
For Apache Hive versions 2.3.x through 2.3.1, update to version 2.3.1 or later.
Correção
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Apache Hive
Apache Ranger