CyberRota Analysis
This is a high severity vulnerability with a CVSS score of 8.8. It affects Apache.
CVE
CVE-2021-33036
Severity
HIGH
CVSS
8.8
EPSS
3.58%
Apache
Original NVD Description
In Apache Hadoop 2.2.0 to 2.10.1, 3.0.0-alpha1 to 3.1.4, 3.2.0 to 3.2.2, and 3.3.0 to 3.3.1, a user who can escalate to yarn user can possibly run arbitrary commands as root user. Users should upgrade to Apache Hadoop 2.10.2, 3.2.3, 3.3.2 or higher.
Related CVEs
Other vulnerabilities affecting the same vendor(s)