[ https://issues.apache.org/jira/browse/HIVE-3009?page=com.atlassian.jira.plugin.system.issuetabpanels:comment-tabpanel&focusedCommentId=13457941#comment-13457941 ]
Sushanth Sowmyan commented on HIVE-3009: ---------------------------------------- I'm +1 on intent/code attached on the review. I've still not got all the tests to pass on the current branch, but that might be due to issues on my end. If we get all tests succeeding, this can be patched in. > do authorization for all metadata operations > -------------------------------------------- > > Key: HIVE-3009 > URL: https://issues.apache.org/jira/browse/HIVE-3009 > Project: Hive > Issue Type: Bug > Components: Authorization, Metastore > Reporter: Thejas M Nair > Assignee: Vandana Ayyalasomayajula > > Most of the metadata read operations and some write operations are not > checking for authorization. > See org.apache.hadoop.hive.ql.plan.HiveOperation . Operations such as > DESCTABLE and DROPDATABASE have null for required privileges. -- This message is automatically generated by JIRA. If you think it was sent incorrectly, please contact your JIRA administrators For more information on JIRA, see: http://www.atlassian.com/software/jira