CVE-2017-7669: Improper Input Validation
(updated )
In Apache Hadoop, the LinuxContainerExecutor
runs docker commands as root with insufficient input validation. When the docker feature is enabled, authenticated users can run commands as root.
References
Detect and mitigate CVE-2017-7669 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →