CVE-2021-29215: Critical severity hpe tez vulnerability
A potential security vulnerability in HPE Ezmeral Data Fabric that may allow a remote access restriction bypass in the TEZ MapR ecosystem component was discovered in version(s): Prior to Tez-0.8: mapr-tez-0.8.201907081100-1.noarch; prior to Tez-0.9: mapr-tez-0.9.201907090334-1.noarch; prior to Tez-0.9.2: mapr-tez-0.9.2.0.201907081043-1.noarch. HPE has provided software updates to resolve the vulnerability in the TEZ MapR ecosystem component in HPE Ezmeral Data Fabric.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-29215?
The severity of CVE-2021-29215 is classified as high due to the potential for remote access restriction bypass.
How do I fix CVE-2021-29215?
To fix CVE-2021-29215, update HPE Tez to version 0.9.0 or later.
Which versions are affected by CVE-2021-29215?
CVE-2021-29215 affects HPE Tez versions prior to 0.8.201907081100-1.noarch and 0.9.201907090334-1.noarch.
Is HPE Ezmeral Data Fabric affected by CVE-2021-29215?
No, HPE Ezmeral Data Fabric is not affected by CVE-2021-29215.
What components are involved in CVE-2021-29215?
CVE-2021-29215 specifically involves the TEZ MapR ecosystem component.