CVE-2017-9803

Source
https://cve.org/CVERecord?id=CVE-2017-9803
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-9803.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2017-9803
Aliases
Published
2017-09-18T21:29:00.280Z
Modified
2026-04-10T04:02:44.683440Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
Summary
[none]
Details

Apache Solr's Kerberos plugin can be configured to use delegation tokens, which allows an application to reuse the authentication of an end-user or another application. There are two issues with this functionality (when using SecurityAwareZkACLProvider type of ACL provider e.g. SaslZkACLProvider). Firstly, access to the security configuration can be leaked to users other than the solr super user. Secondly, malicious users can exploit this leaked configuration for privilege escalation to further expose/modify private data and/or disrupt operations in the Solr cluster. The vulnerability is fixed from Apache Solr 6.6.1 onwards.

References

Affected packages

Git / github.com/apache/lucene-solr

Affected ranges

Type
GIT
Repo
https://github.com/apache/lucene-solr
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected
Database specific
{
    "versions": [
        {
            "introduced": "0"
        },
        {
            "last_affected": "6.2.0"
        },
        {
            "introduced": "0"
        },
        {
            "last_affected": "6.2.1"
        },
        {
            "introduced": "0"
        },
        {
            "last_affected": "6.3.0"
        },
        {
            "introduced": "0"
        },
        {
            "last_affected": "6.4.0"
        },
        {
            "introduced": "0"
        },
        {
            "last_affected": "6.4.1"
        },
        {
            "introduced": "0"
        },
        {
            "last_affected": "6.4.2"
        },
        {
            "introduced": "0"
        },
        {
            "last_affected": "6.5.0"
        },
        {
            "introduced": "0"
        },
        {
            "last_affected": "6.5.1"
        },
        {
            "introduced": "0"
        },
        {
            "last_affected": "6.6.0"
        }
    ]
}

Affected versions

Other
grafts/lucene-oldest
grafts/lucene-solr-copy
grafts/lucene-solr-oldest-merged
history/branches/lucene-solr/lucene-6997
releases/lucene-solr/6.*
releases/lucene-solr/6.2.0
releases/lucene-solr/6.2.1
releases/lucene-solr/6.3.0
releases/lucene-solr/6.4.0
releases/lucene-solr/6.4.1
releases/lucene-solr/6.4.2
releases/lucene-solr/6.5.0
releases/lucene-solr/6.5.1
releases/lucene-solr/6.6.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-9803.json"