8.8
CVSSv3

CVE-2018-8009

Published: 13/11/2018 Updated: 07/11/2023
CVSS v2 Base Score: 6.5 | Impact Score: 6.4 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 580
Vector: AV:N/AC:L/Au:S/C:P/I:P/A:P

Vulnerability Summary

Apache Hadoop 3.1.0, 3.0.0-alpha to 3.0.2, 2.9.0 to 2.9.1, 2.8.0 to 2.8.4, 2.0.0-alpha to 2.7.6, 0.23.0 to 0.23.11 is exploitable via the zip slip vulnerability in places that accept a zip file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache hadoop 2.0.0

apache hadoop 3.0.0

apache hadoop

apache hadoop 3.1.0

Vendor Advisories

Synopsis Important: Red Hat Fuse 750 security update Type/Severity Security Advisory: Important Topic A minor version update (from 74 to 75) is now available for Red Hat Fuse The purpose of this text-only errata is to inform you about the security issues fixed in this releaseRed Hat Product Security h ...
Apache Hadoop 310, 300-alpha to 302, 290 to 291, 280 to 284, 200-alpha to 276, 0230 to 02311 is exploitable via the zip slip vulnerability in places that accept a zip file ...