user/group information can be corrupted across storing in fsimage and reading back from fsimage
High severity
GitHub Reviewed
Published
Nov 20, 2019
to the GitHub Advisory Database
•
Updated Jan 9, 2023
Package
Affected versions
>= 2.2.0, < 2.8.5
>= 2.9.0, < 2.9.2
>= 3.0.0, < 3.1.1
Patched versions
2.8.5
2.9.2
3.1.1
Description
Reviewed
Nov 19, 2019
Published to the GitHub Advisory Database
Nov 20, 2019
Last updated
Jan 9, 2023
In Apache Hadoop 3.1.0 to 3.1.1, 3.0.0-alpha1 to 3.0.3, 2.9.0 to 2.9.1, and 2.0.0-alpha to 2.8.4, the user/group information can be corrupted across storing in fsimage and reading back from fsimage.
References