First published: Wed Jul 03 2019(Updated: )
Secret data of processes managed by CM is not secured by file permissions.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Cloudera Cloudera Manager | =5.9.2 | |
Cloudera Cloudera Manager | =5.10.1 | |
Cloudera Cloudera Manager | =5.11.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2017-9327 is medium.
Cloudera Manager versions 5.9.2, 5.10.1, and 5.11.0 are affected by CVE-2017-9327.
To secure the secret data of processes managed by Cloudera Manager, ensure proper file permissions are set.
More information about CVE-2017-9327 can be found at the following link: https://www.cloudera.com/documentation/other/security-bulletins/topics/Security-Bulletin.html
CVE-2017-9327 belongs to CWE category 275.