CVE-2023-35393: Azure Apache Hive Spoofing Vulnerability
Published Aug 8, 2023
·Updated
Azure Apache Hive Spoofing Vulnerability
Affected Software
3 affected componentsFixes available
Microsoft Azure HDInsights
Microsoft Azure HDInsight
Microsoft Azure HDInsight<2307201242
2307201242
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 2307201242
Event History
Aug 8, 2023
CVE Published
07:00 AM
Data Sourced
07:00 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·07:00 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·07:00 AM
Description
CVE Published
via MITRE·05:08 PM
Data Sourced
via MITRE·05:08 PM
DescriptionSeverity
Data Sourced
via NVD·06:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the CVE ID for this vulnerability?
The CVE ID for this vulnerability is CVE-2023-35393.
2
What is the title of this vulnerability?
The title of this vulnerability is Azure Apache Hive Spoofing Vulnerability.
3
What software is affected by this vulnerability?
The affected software is Microsoft Azure HDInsight.
4
How severe is this vulnerability?
This vulnerability has a severity level of high with a CVSS score of 4.5.
5
How can I fix this vulnerability?
To fix this vulnerability, you can follow the remediation steps provided by Microsoft by visiting the following URL: https://learn.microsoft.com/en-us/azure/hdinsight/hdinsight-release-notes