CVE-2018-11778: Apache Ranger
High severity, CVSS 8.8. EPSS: 4% chance of exploitation in the next 30 days.
UnixAuthenticationService in Apache Ranger 1.2.0 was updated to correctly handle user input to avoid Stack-based buffer overflow. Versions prior to 1.2.0 should be upgraded to 1.2.0
Affected products
- Apache Ranger: before 1.2.0 (fixed in 1.2.0)
Published 2018-10-05. Last modified 2026-06-17.