apache hive CVE-2018-11777 is a vulnerability in Apache Hive
Published on November 8, 2018

In Apache Hive 2.3.3, 3.1.0 and earlier, local resources on HiveServer2 machines are not properly protected against malicious user if ranger, sentry or sql standard authorizer is not in use.

NVD


Products Associated with CVE-2018-11777

Want to know whenever a new CVE is published for Apache Hive? stack.watch will email you.

 

Affected Versions

Apache Software Foundation Apache Hive Version All versions of Hive, including 2.3.3, 3.1.0 and earlier is affected by CVE-2018-11777

Exploit Probability

EPSS
0.41%
Percentile
61.05%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.