https://seclists.org/oss-sec/2023/q3/64: CVE-2023-34189: Apache InLong: General user can delete and update process
Published Jul 25, 2023
·Updated
Affected Software
1 affected component
Apache Inlong>=1.4.0<=1.7.0
Frequently Asked Questions
1
What is the severity of CVE-2023-34189?
The severity of CVE-2023-34189 is classified as important.
2
Which versions of Apache InLong are affected by CVE-2023-34189?
Apache InLong versions 1.4.0 through 1.7.0 are affected by CVE-2023-34189.
3
What is CVE-2023-34189 about?
CVE-2023-34189 describes a vulnerability allowing general users to delete and update processes in Apache InLong.
4
How do I fix CVE-2023-34189?
To fix CVE-2023-34189, upgrade to a version of Apache InLong that is not affected, above 1.7.0.
5
What could an attacker do with CVE-2023-34189?
An attacker could exploit CVE-2023-34189 to delete and update processes using general user permissions.