Reply
New Contributor
Posts: 3
Registered: ‎01-25-2018

New Release CDH 5.14.2 is not including the fix for CVE-2017-15712

Hi, CDH 5.13.2 had the fix for CVE-2017-15712 (https://www.cloudera.com/documentation/enterprise/release-notes/topics/cdh_rn_fixed_in_513.html#fixe...) But that is missing in 5.14.2. We were waiting for this release for this update. We were told this release would include this fix too...?

 

Posts: 1,760
Kudos: 379
Solutions: 282
Registered: ‎07-31-2013

Re: New Release CDH 5.14.2 is not including the fix for CVE-2017-15712

Apologies that the doc is unclear on if its included, I've filed an internal report to have it updated. However, the fixes for Oozie's CVE-2017-15712 is indeed in the CDH 5.14.2 release per its sources.
Announcements