Description
In environments that use external location for hive tables, Hive Authorizer in Apache Ranger before 0.7.1 should be checking RWX permission for create table.
Remediation
References
https://cwiki.apache.org/confluence/display/RANGER/Vulnerabilities+found+in+Ranger
http://www.securityfocus.com/bid/98961
Related Vulnerabilities
CVE-2022-25867 Vulnerability in maven package io.socket:socket.io-client
CVE-2023-33944 Vulnerability in maven package com.liferay.portal:release.portal.bom
CVE-2022-39387 Vulnerability in maven package org.xwiki.contrib.oidc:oidc-authenticator
CVE-2019-13127 Vulnerability in npm package mxgraph
CVE-2021-41184 Vulnerability in maven package org.webjars.bowergithub.jquery:jquery-ui