CVE-2016-3192: Medium severity cloudera manager vulnerability
Published Nov 26, 2019
·Updated
Cloudera Manager 5.x before 5.7.1 places Sensitive Data in cleartext Readable Files.
Affected Software
3 affected components
Cloudera Cloudera Manager>=5.0.0<5.5.4
Cloudera Cloudera Manager>=5.6.0<5.6.1
Cloudera Cloudera Manager>=5.7.0<5.7.1
Event History
Nov 26, 2019
CVE Published
via MITRE·01:56 PM
Data Sourced
via MITRE·01:56 PM
Description
Frequently Asked Questions
1
What is CVE-2016-3192?
CVE-2016-3192 is a vulnerability in Cloudera Manager 5.x before 5.7.1 that allows sensitive data to be placed in cleartext readable files.
2
What is the severity of CVE-2016-3192?
The severity of CVE-2016-3192 is medium with a CVSS score of 6.5.
3
Which software versions are affected by CVE-2016-3192?
Cloudera Manager versions between 5.0.0 and 5.5.4, between 5.6.0 and 5.6.1, and between 5.7.0 and 5.7.1 are affected by CVE-2016-3192.
4
How can I fix CVE-2016-3192?
To fix CVE-2016-3192, update Cloudera Manager to version 5.7.1 or later.
5
Where can I find more information about CVE-2016-3192?
You can find more information about CVE-2016-3192 on the Cloudera Security Bulletin page: https://docs.cloudera.com/documentation/other/security-bulletins/topics/Security-Bulletin.html#tsb_134