hive-issues mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Daniel Dai (JIRA)" <j...@apache.org>
Subject [jira] [Updated] (HIVE-20355) Clean up parameter of HiveConnection.setSchema
Date Sat, 15 Sep 2018 18:53:00 GMT

     [ https://issues.apache.org/jira/browse/HIVE-20355?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel
]

Daniel Dai updated HIVE-20355:
------------------------------
       Resolution: Fixed
     Hadoop Flags: Reviewed
    Fix Version/s: 4.0.0
           Status: Resolved  (was: Patch Available)

Patch pushed to master. Thanks Sankar for review!

> Clean up parameter of HiveConnection.setSchema
> ----------------------------------------------
>
>                 Key: HIVE-20355
>                 URL: https://issues.apache.org/jira/browse/HIVE-20355
>             Project: Hive
>          Issue Type: Bug
>          Components: JDBC
>            Reporter: Daniel Dai
>            Assignee: Daniel Dai
>            Priority: Major
>             Fix For: 4.0.0
>
>         Attachments: HIVE-20355.1.patch
>
>
> Not immediately exploitable, as HS2 only allow one statement a time. But in future, we
may support multiple statement in HiveStatement, so better to clean up the database parameter
to avoid potential sql injection.



--
This message was sent by Atlassian JIRA
(v7.6.3#76005)

Mime
View raw message