Skip to content

Conversation

@yongtang
Copy link
Member

@yongtang yongtang commented Mar 2, 2021

This PR will try to resolve the issue related to:

Vulnerability Description
Hadoop Yarn Unauthenticated ResourceManager API
Hadoop Yarn ResourceManager controls the computation and storage resources of a Hadoop cluster.
Exposing the ResourceManager API without authentication allows any remote user to create and execute arbitrary applications on the host.
Affected asset(s):
<ip>:8088 VM Instance kokoro-gcp-ubuntu-prod-<number> in GCP project kokoro project_number: <number>

Signed-off-by: Yong Tang [email protected]

This PR will try to resolve the issue related to:
```
Vulnerability Description
Hadoop Yarn Unauthenticated ResourceManager API
Hadoop Yarn ResourceManager controls the computation and storage resources of a Hadoop cluster.
Exposing the ResourceManager API without authentication allows any remote user to create and execute arbitrary applications on the host.
Affected asset(s):
<ip>:8088 VM Instance kokoro-gcp-ubuntu-prod-<number> in GCP project kokoro project_number: <number>
```

Signed-off-by: Yong Tang <[email protected]>
@yongtang
Copy link
Member Author

yongtang commented Mar 2, 2021

/cc @jsimsa FYI

@yongtang yongtang merged commit b00c128 into tensorflow:master Mar 2, 2021
@yongtang yongtang deleted the hadoop-resource-manager-fix branch March 2, 2021 16:23
i-ony pushed a commit to i-ony/io that referenced this pull request Mar 8, 2021
michaelbanfield pushed a commit to michaelbanfield/io that referenced this pull request Mar 30, 2021
zheolong pushed a commit to zheolong/io-1 that referenced this pull request Jul 24, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants