Description
In environments that use external location for hive tables, Hive Authorizer in Apache Ranger before 0.7.1 should be checking RWX permission for create table.
Remediation
References
http://www.securityfocus.com/bid/98961
https://cwiki.apache.org/confluence/display/RANGER/Vulnerabilities+found+in+Ranger
Related Vulnerabilities
CVE-2017-16026 Vulnerability in maven package org.webjars.npm:request
CVE-2019-19040 Vulnerability in maven package org.kairosdb:kairosdb
CVE-2023-29216 Vulnerability in maven package org.apache.linkis:linkis-common
CVE-2021-41097 Vulnerability in npm package aurelia-path
CVE-2019-10281 Vulnerability in maven package org.jenkins-ci.plugins:relution-publisher