VYPR
Medium severity5.3NVD Advisory· Published Mar 21, 2024· Updated Jun 17, 2026

CVE-2024-26307

CVE-2024-26307

Description

Possible race condition vulnerability in Apache Doris. Some of code using chmod() method. This method run the risk of someone renaming the file out from under user and chmodding the wrong file. This could theoretically happen, but the impact would be minimal. This issue affects Apache Doris: before 1.2.8, before 2.0.4.

Users are recommended to upgrade to version 2.0.4, which fixes the issue.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Apache Software Foundation/Apache Dorisv5
    Range: 0
  • Apache/Dorisllm-fuzzy2 versions
    <1.2.8, <2.0.4+ 1 more
    • (no CPE)range: <1.2.8, <2.0.4
    • cpe:2.3:a:apache:doris:*:*:*:*:*:*:*:*range: <1.2.8

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.