Re: CVE-2016-3083: Apache Hive SSL vulnerability bug disclosure

2017-05-30 Thread Sergio Pena
Hi Vaibhav, Do you happen to know which JIRA or patches addressed this issue? - Sergio On Wed, May 24, 2017 at 5:56 PM, Vaibhav Gumashta wrote: > Severity: Important > > Vendor: The Apache Software Foundation > > Versions Affected: > Apache Hive 0.13.x > Apache Hive 0.14.x > Apache Hive 1.0.0

CVE-2016-3083: Apache Hive SSL vulnerability bug disclosure

2017-05-24 Thread Vaibhav Gumashta
Severity: Important Vendor: The Apache Software Foundation Versions Affected: Apache Hive 0.13.x Apache Hive 0.14.x Apache Hive 1.0.0 - 1.0.1 Apache Hive 1.1.0 - 1.1.1 Apache Hive 1.2.0 - 1.2.1 Apache Hive 2.0.0 Description: Apache Hive (JDBC + HiveServer2) implements SSL for plain TCP and HTTP