We use these services and cookies to improve your user experience. You may opt out if you wish, however, this may limit some features on this site.

Please see our statement on Data Privacy.

Crisp.chat (Helpdesk and Chat)

Ok

THREATINT
PUBLISHED

CVE-2021-36151

Local Credentials Disclosure Vulnerability



Assignerapache
Reserved2021-07-05
Published2022-02-04
Updated2024-08-04

Description

In Apache Gobblin, the Hadoop token is written to a temp file that is visible to all local users on Unix-like systems. This affects versions <= 0.15.0. Users should update to version 0.16.0 which addresses this issue.

Product status

Apache Gobblin
affected

Credits

Apache Gobblin would like to thank Jonathan Leitschuh for reporting this issue.

References

https://lists.apache.org/thread/3cdkyxdd6xk05lsvr3l66dsnvhwyo1t0

cve.org CVE-2021-36151

nvd.nist.gov CVE-2021-36151

Download JSON

Share this page
https://cve.threatint.com/CVE/CVE-2021-36151
Support options

Helpdesk Telegram

Subscribe to our newsletter to learn more about our work.