Beveiligingsadvies

CVE-2022-23942

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-04-26 16:05:10
Laatst bijgewerkt 2024-08-03 03:59:23
Toegewezen door apache
CVSS-score geen score
Status PUBLISHED

Beschrijving

Apache Doris, prior to 1.0.0, used a hardcoded key and IV to initialize the cipher used for ldap password, which may lead to information disclosure.