Description
In environments that use external location for hive tables, Hive Authorizer in Apache Ranger before 0.7.1 should be checking RWX permission for create table.
Remediation
References
http://www.securityfocus.com/bid/98961
https://cwiki.apache.org/confluence/display/RANGER/Vulnerabilities+found+in+Ranger
Related Vulnerabilities
CVE-2020-11072 Vulnerability in npm package slp-validate
CVE-2020-2238 Vulnerability in maven package org.jenkins-ci.plugins:git-parameter
CVE-2020-15215 Vulnerability in maven package org.webjars.npm:electron
CVE-2021-21625 Vulnerability in maven package org.jenkins-ci.plugins:aws-credentials
CVE-2022-42003 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind