CVE-2018-11778: Apache Ranger

High severity, CVSS 8.8. EPSS: 4% chance of exploitation in the next 30 days.

UnixAuthenticationService in Apache Ranger 1.2.0 was updated to correctly handle user input to avoid Stack-based buffer overflow. Versions prior to 1.2.0 should be upgraded to 1.2.0

Affected products

  • Apache Ranger: before 1.2.0 (fixed in 1.2.0)

Published 2018-10-05. Last modified 2026-06-17.