A vulnerability was found in Apache Hadoop up to 3.3.x. It has been rated as problematic. This issue affects the function
runJar.run
. The manipulation leads to creation of temporary file in directory with insecure permissions.
The identification of this vulnerability is CVE-2024-23454. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.