cbcvebase.
CVE-2020-35451
published 2021-03-09

CVE-2020-35451: There is a race condition in OozieSharelibCLI in Apache Oozie before version 5.2.1 which allows a malicious attacker to replace the files in Oozie's sharelib…

medium4.7CVSS 3.1
AVLACHPRLUINSUCNIHAN
There is a race condition in OozieSharelibCLI in Apache Oozie before version 5.2.1 which allows a malicious attacker to replace the files in Oozie's sharelib during it's creation.

Affected

2 ranges
VendorProductVersion rangeFixed in
apacheoozie< 5.2.15.2.1
apache_software_foundationapache_oozie>= unspecified < 5.2.15.2.1