CVE-2017-9803 Information
Description
Apache Solr’s Kerberos plugin can be configured to use delegation tokens which allows an application to reuse the authentication of an end-user or another application. There are two issues with this functionality (when using SecurityAwareZkACLProvider type of ACL provider e.g. SaslZkACLProvider). Firstly access to the security configuration can be leaked to users other than the solr super user. Secondly malicious users can exploit this leaked configuration for privilege escalation to further expose/modify private data and/or disrupt operations in the Solr cluster. The vulnerability is fixed from Apache Solr 6.6.1 onwards.
CVSS Vector
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
http://mail-archives.us.apache.org/mod_mbox/www-announce/201709.mbox/3CCAOOKt53AOScg04zUh02BR_fcXD0C9s5mQ-OzdgYdnHz49u1KmXw@mail.gmail.com3E http://www.securityfocus.com/bid/100870
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
7.5
Share on: