CVE-2017-9326

Severity CVSS v4.0:
Pending analysis
Type:
CWE-255 Credentials Management
Publication date:
03/07/2019
Last modified:
11/07/2019

Description

The keystore password for the Spark History Server may be exposed in unsecured files under the /var/run/cloudera-scm-agent directory managed by Cloudera Manager. The keystore file itself is not exposed.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:cloudera:cloudera_manager:5.11.0:*:*:*:*:*:*:*