SB2024022837 - Multiple vulnerabilities in Apache Superset
Published: February 28, 2024
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 5 secuirty vulnerabilities.
1) Improper access control (CVE-ID: CVE-2024-26016)
The vulnerability allows a remote user to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions. A remote user can bypass implemented security restrictions and import an existing dashboard or chart.
2) Improper access control (CVE-ID: CVE-2024-24779)
The vulnerability allows a remote user to gain unauthorized access to otherwise restricted functionality.
The vulnerability exists due to improper access restrictions when creating a new dataset. A remote attacker can bypass implemented security restrictions and gain unauthorized access to the application.
3) Information exposure through externally-generated error message (CVE-ID: CVE-2024-24772)
The vulnerability allows a remote user to gain access to potentially sensitive information.
The vulnerability exists due to excessive data output by the application while handling error conditions in chart data REST API. A remote user can obtain sensitive information on the system.
4) Permissions, Privileges, and Access Controls (CVE-ID: CVE-2024-24773)
The vulnerability allows a remote user to gain access to sensitive information.
5) Error Handling (CVE-ID: CVE-2024-27315)
The vulnerability allows a remote user to gain access to sensitive information.
The vulnerability exists due to improper error handling. A remote user with privileges to create Alerts on Alerts & Reports has the capability to generate a specially crafted SQL statement that triggers an error on the database.
Remediation
Install update from vendor's website.
References
- https://lists.apache.org/thread/76v1jjcylgk4p3m0258qr359ook3vl8s
- https://lists.apache.org/thread/xzhz1m5bb9zxhyqgoy4q2d689b3zp4pq
- https://lists.apache.org/thread/gfl3ckwy6y9tpz9jmpv62orh2q346sn5
- https://lists.apache.org/thread/h66fy6nj41cfx07zh7l552w6dmtjh501
- https://lists.apache.org/thread/qcwbx7q2s3ynsd405895bx3wcwq32j7z