6.5

CVE-2012-1574

The Kerberos/MapReduce security functionality in Apache Hadoop 0.20.203.0 through 0.20.205.0, 0.23.x before 0.23.2, and 1.0.x before 1.0.2, as used in Cloudera CDH CDH3u0 through CDH3u2, Cloudera hadoop-0.20-sbin before 0.20.2+923.197, and other products, allows remote authenticated users to impersonate arbitrary cluster user accounts via unspecified vectors.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
ApacheHadoop Version0.20.203.0
ApacheHadoop Version0.20.204.0
ApacheHadoop Version0.20.205.0
ApacheHadoop Version0.23.0
ApacheHadoop Version0.23.1
ApacheHadoop Version1.0.0
ApacheHadoop Version1.0.1
ClouderaCloudera Cdh Versioncdh3 Update0
ClouderaCloudera Cdh Versioncdh3 Update1
ClouderaCloudera Cdh Versioncdh3 Update2
ClouderaHadoop Version0.20-sbin
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.29% 0.522
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.5 8 6.4
AV:N/AC:L/Au:S/C:P/I:P/A:P