CVE-2017-5802: Critical severity hp vertica vulnerability
Published Feb 15, 2018
·Updated
A Remote Gain Privileged Access vulnerability in HPE Vertica Analytics Platform version v4.1 and later was found.
Affected Software
12 affected components
HP Vertica<6.1.3-20
HP Vertica>=7.0<7.0.2-13
HP Vertica>=7.1<7.1.2-21
HP Vertica>=7.2<7.2.3-18
HP Vertica>=8.0<8.0.1-3
HP Vertica>=8.1<8.1.0-1
OpenText Vertica<6.1.3-20
OpenText Vertica>=7.0<7.0.2-13
OpenText Vertica>=7.1<7.1.2-21
OpenText Vertica>=7.2<7.2.3-18
OpenText Vertica>=8.0<8.0.1-3
OpenText Vertica>=8.1<8.1.0-1
Event History
Feb 15, 2018
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
DescriptionWeakness
Data Sourced
via NVD·10:29 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-5802?
CVE-2017-5802 is classified as a high-severity vulnerability due to its potential for remote privilege escalation.
2
How do I fix CVE-2017-5802?
To mitigate CVE-2017-5802, update the HPE Vertica Analytics Platform to a version that includes the security patch for this vulnerability.
3
What versions of HPE Vertica are affected by CVE-2017-5802?
CVE-2017-5802 affects HPE Vertica versions from v4.1 up to v8.1.0-1.
4
Can CVE-2017-5802 allow unauthorized access?
Yes, CVE-2017-5802 can allow an attacker to gain privileged access remotely, potentially leading to unauthorized access to sensitive data.
5
Is there an official patch for CVE-2017-5802?
Yes, HPE has released patches in newer versions of HPE Vertica that address CVE-2017-5802.