Description
In environments that use external location for hive tables, Hive Authorizer in Apache Ranger before 0.7.1 should be checking RWX permission for create table.
Remediation
References
http://www.securityfocus.com/bid/98961
https://cwiki.apache.org/confluence/display/RANGER/Vulnerabilities+found+in+Ranger
Related Vulnerabilities
CVE-2023-37895 Vulnerability in maven package org.apache.jackrabbit:jackrabbit-webapp
CVE-2020-10687 Vulnerability in maven package io.undertow:undertow-core
CVE-2022-23106 Vulnerability in maven package io.jenkins:configuration-as-code
CVE-2019-1003067 Vulnerability in maven package org.jenkins-ci.plugins:trac-publisher-plugin
CVE-2019-1003096 Vulnerability in maven package org.jenkins-ci.plugins:testfairy