Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2012-1574

EPSS 0.46% · P64
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2012-1574

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
The Kerberos/MapReduce security functionality in Apache Hadoop 0.20.203.0 through 0.20.205.0, 0.23.x before 0.23.2, and 1.0.x before 1.0.2, as used in Cloudera CDH CDH3u0 through CDH3u2, Cloudera hadoop-0.20-sbin before 0.20.2+923.197, and other products, allows remote authenticated users to impersonate arbitrary cluster user accounts via unspecified vectors.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Apache Hadoop加密问题漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Apache Hadoop 0.20.203.0到0.20.205.0版本、0.23.2之前的0.23.x版本和1.0.2之前的1.0.x版本中的Kerberos/MapReduce安全函数被用于Cloudera CDH CDH3u0到CDH3u2版本、0.20.2+923.197之前的Cloudera hadoop-0.20-sbin版本及其他产品中时存在漏洞。远程认证用户可利用该漏洞借助未明向量模拟任意用户并执行非法操作。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2012-1574

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2012-1574

登录查看更多情报信息。

Same Patch Batch · n/a · 2012-04-12 · 4 CVEs total

CVE-2011-3846HP System Management Homepage跨站请求伪造漏洞
CVE-2012-0133HP ProCurve 5400 zl交换机任意代码执行漏洞
CVE-2012-2230Cloudera Manager加密问题漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2012-1574

No comments yet


Leave a comment