CVE-2018-11778: Buffer Overflow
Published Oct 5, 2018
·Updated
UnixAuthenticationService in Apache Ranger 1.2.0 was updated to correctly handle user input to avoid Stack-based buffer overflow. Versions prior to 1.2.0 should be upgraded to 1.2.0
Affected Software
1 affected component
Apache Ranger<1.2.0
Event History
Oct 5, 2018
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2018-11778?
CVE-2018-11778 has a medium severity due to its potential to cause a stack-based buffer overflow.
2
How do I fix CVE-2018-11778?
To fix CVE-2018-11778, upgrade your Apache Ranger installation to version 1.2.0 or later.
3
What software is affected by CVE-2018-11778?
CVE-2018-11778 affects Apache Ranger versions prior to 1.2.0.
4
What vulnerability does CVE-2018-11778 address?
CVE-2018-11778 addresses a vulnerability in the UnixAuthenticationService in Apache Ranger that could lead to a stack-based buffer overflow.
5
Is CVE-2018-11778 a zero-day vulnerability?
No, CVE-2018-11778 is not a zero-day vulnerability as it has a public disclosure and a patch is available.