Total vulnerabilities in the database
In Apache Hadoop 2.8.0, 3.0.0-alpha1, and 3.0.0-alpha2, the LinuxContainerExecutor runs docker commands as root with insufficient input validation. When the docker feature is enabled, authenticated users can run commands as root.
Software | From | Fixed in |
---|---|---|
apache / hadoop | 3.0.0-alpha1 | 3.0.0-alpha1.x |
apache / hadoop | 3.0.0-alpha2 | 3.0.0-alpha2.x |
apache / hadoop | 2.8.0 | 2.8.0.x |
![]() |
- | 2.8.1 |
![]() |
3.0.0-alpha1 | 3.0.0-alpha3 |