7.5
CVSSv2

CVE-2021-37404

Published: 13/06/2022 Updated: 27/06/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

There is a potential heap buffer overflow in Apache Hadoop libhdfs native code. Opening a file path provided by user without validation may result in a denial of service or arbitrary code execution. Users should upgrade to Apache Hadoop 2.10.2, 3.2.3, 3.3.2 or higher.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache hadoop

Vendor Advisories

There is a potential heap buffer overflow in Apache Hadoop libhdfs native code Opening a file path provided by user without validation may result in a denial of service or arbitrary code execution Users should upgrade to Apache Hadoop 2102, 323, 332 or higher ...