HIGH
In Apache Impala 2.7.0 to 3.2.0, an authenticated user with access to the IDs of active Impala queries or sessions can interact with those sessions or queries via a specially-constructed request and thereby potentially bypass authorization and audit mechanisms
Published Nov 5, 2019
7.5
HIGHCVSS 3.1
EPSS 0.99%
Description
Affected products
Remediation
References (2)
Change history (0)
No recorded changes yet.