GHSA-6xhj-p29v-82j8
HIGHCVE-2018-8028An authenticated user can execute ALTER TABLE EXCHANGE PARTITIONS without being authorized by Apache Sentry before 2.0.1. This can allow an attacker unauthorized access to the partitioned data of a Sentry protected table and can allow an attacker to remove data from a Sentry protected table.
- Affected
- < 2.0.1
- Fixed in
- 2.0.1
- Weakness
- CWE-862
- Published
- 2022-05-13
- Source
- github