CVE-2015-6495: Infoleak
Published Nov 26, 2019
·Updated
There is Sensitive Information in Cloudera Manager before 5.4.6 Diagnostic Support Bundles.
Affected Software
5 affected components
Cloudera Cloudera Manager<4.8.6
Cloudera Cloudera Manager>=5.0.0<5.0.7
Cloudera Cloudera Manager>=5.1.0<5.1.6
Cloudera Cloudera Manager>=5.3.0<5.3.7
Cloudera Cloudera Manager>=5.4.0<5.4.6
Event History
Nov 26, 2019
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is CVE-2015-6495?
CVE-2015-6495 is a vulnerability that allows sensitive information to be exposed in Cloudera Manager before version 5.4.6 Diagnostic Support Bundles.
2
What is the severity of CVE-2015-6495?
The severity of CVE-2015-6495 is high, with a CVSS score of 7.5.
3
Which software versions are affected by CVE-2015-6495?
Cloudera Manager versions up to 5.4.6 are affected by CVE-2015-6495.
4
How can I fix CVE-2015-6495?
To fix CVE-2015-6495, you should update Cloudera Manager to version 5.4.6 or later.
5
Where can I find more information about CVE-2015-6495?
You can find more information about CVE-2015-6495 in the Cloudera Manager Security Bulletin: [link](https://docs.cloudera.com/documentation/other/security-bulletins/topics/Security-Bulletin.html#concept_alalsdfkl4320_lfsk30f__l2k3jfsw34__39).