Description
In environments that use external location for hive tables, Hive Authorizer in Apache Ranger before 0.7.1 should be checking RWX permission for create table.
Remediation
References
http://www.securityfocus.com/bid/98961
https://cwiki.apache.org/confluence/display/RANGER/Vulnerabilities+found+in+Ranger
Related Vulnerabilities
CVE-2023-30465 Vulnerability in maven package org.apache.inlong:manager-service
CVE-2014-0111 Vulnerability in maven package org.apache.syncope:syncope-core
CVE-2023-31417 Vulnerability in maven package org.elasticsearch:elasticsearch
CVE-2017-5651 Vulnerability in maven package org.apache.tomcat:tomcat-coyote
CVE-2020-13445 Vulnerability in maven package com.liferay:com.liferay.portal.template.velocity