CVE Vulnerabilities

CVE-2021-29215

Published: Jan 18, 2022 | Modified: Jan 26, 2022
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

A potential security vulnerability in HPE Ezmeral Data Fabric that may allow a remote access restriction bypass in the TEZ MapR ecosystem component was discovered in version(s): Prior to Tez-0.8: mapr-tez-0.8.201907081100-1.noarch; prior to Tez-0.9: mapr-tez-0.9.201907090334-1.noarch; prior to Tez-0.9.2: mapr-tez-0.9.2.0.201907081043-1.noarch. HPE has provided software updates to resolve the vulnerability in the TEZ MapR ecosystem component in HPE Ezmeral Data Fabric.

Affected Software

Name Vendor Start Version End Version
Tez Hpe 0.8 (including) 0.8.201907081100-1.noarch (including)
Tez Hpe 0.9 (including) 0.9.201907090334-1.noarch (excluding)
Tez Hpe 0.9.2 (including) 0.9.2.0.201907081043-1.noarch (including)

References