In Apache Hadoop 2.9.0 to 2.9.1, 2.8.3 to 2.8.4, 2.7.5 to 2.7.6, KMS blocking users or granting access to users incorrectly, if the system uses non-default groups mapping mechanisms.
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Hadoop | Apache | 2.7.5 (including) | 2.7.6 (including) |
Hadoop | Apache | 2.8.3 (including) | 2.8.4 (including) |
Hadoop | Apache | 2.9.0 (including) | 2.9.1 (including) |