CVE-2017-9327: Medium severity Cloudera Cloudera Manager vulnerability
Published Jul 3, 2019
·Updated
Secret data of processes managed by CM is not secured by file permissions.
Affected Software
3 affected components
Cloudera Cloudera Manager=5.9.2
Cloudera Cloudera Manager=5.10.1
Cloudera Cloudera Manager=5.11.0
Event History
Jul 3, 2019
CVE Published
via MITRE·04:14 PM
Data Sourced
via MITRE·04:14 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-9327?
The severity of CVE-2017-9327 is medium.
2
Which versions of Cloudera Manager are affected by CVE-2017-9327?
Cloudera Manager versions 5.9.2, 5.10.1, and 5.11.0 are affected by CVE-2017-9327.
3
How can I secure the secret data of processes managed by Cloudera Manager?
To secure the secret data of processes managed by Cloudera Manager, ensure proper file permissions are set.
4
Where can I find more information about CVE-2017-9327?
More information about CVE-2017-9327 can be found at the following link: https://www.cloudera.com/documentation/other/security-bulletins/topics/Security-Bulletin.html
5
What Common Weakness Enumeration (CWE) category does CVE-2017-9327 belong to?
CVE-2017-9327 belongs to CWE category 275.