The keystore password for the Spark History Server may be exposed in unsecured files under the /var/run/cloudera-scm-agent directory managed by Cloudera Manager. The keystore file itself is not exposed.
Weaknesses in this category are related to the management of credentials.
Link | Tags |
---|---|
https://www.cloudera.com/documentation/other/security-bulletins/topics/Security-Bulletin.html | vendor advisory |