Apache Hive Security Restriction Bypass Vulnerability (CVE-2014-0228)
Release date:
Updated on:
Affected Systems:
Apache Group Hive
Description:
--------------------------------------------------------------------------------
Bugtraq id: 68039
CVE (CAN) ID: CVE-2014-0228
Apache Hive is a database software that facilitates query and management of large datasets on distributed storage devices.
Apache Hive 0.6.2 and other versions have the Security Restriction Bypass Vulnerability. After successful exploitation, attackers can bypass certain security restrictions and perform unauthorized operations.
Hadoop cluster-based Hive Installation
Differences between Hive internal tables and external tables
Hadoop + Hive + Map + reduce cluster installation and deployment
Install in Hive local standalone Mode
WordCount word statistics for Hive Learning
<* Source: Thejas Nair
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Apache Group
------------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://hive.apache.org/
Hive details: click here
Hive: click here
This article permanently updates the link address: