CVE-2012-2945: High severity Apache Hadoop vulnerability
Hadoop 1.0.3 contains a symlink vulnerability as a result of storing pid files in the shared /tmp directory by default.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2012-2945?
CVE-2012-2945 refers to a symlink vulnerability found in Hadoop 1.0.3.
What is the severity of CVE-2012-2945?
The severity of CVE-2012-2945 is rated as high with a severity value of 7.5.
How does CVE-2012-2945 affect Hadoop 1.0.3?
CVE-2012-2945 affects Hadoop 1.0.3 by exploiting a symlink vulnerability caused by storing pid files in the shared /tmp directory by default.
How can I fix CVE-2012-2945 in Hadoop 1.0.3?
To fix CVE-2012-2945 in Hadoop 1.0.3, upgrade to version 1.0.4.
Is there any additional information about CVE-2012-2945?
For more information about CVE-2012-2945, you can refer to the following links: [NVD](https://nvd.nist.gov/vuln/detail/CVE-2012-2945), [Full Disclosure](https://seclists.org/fulldisclosure/2012/Jul/3), [Debian Security Tracker](https://security-tracker.debian.org/tracker/CVE-2012-2945).