Vulnary
← back to the feed
Critical· 9.8official fix available

CVE-2026-56207

Apache Impala versions 4.0.0 and newer contain a flaw that lets attackers change the user name in SAML2 authentication, effectively impersonating other users. The vulnerability is in the hs2-http interface and is not mitigated by the token signature check. It can be fixed by upgrading to a patched version.

publishedSep 9, 2026
last modifiedSep 10, 2026
sourcesNVD
severity · cvss
9.8
critical · how bad it is
exploitation · epss
<1%
39th percentile · chance of exploitation in 30 days
(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →
auto-deletes from the system
counting…on Oct 10, 2026

An official fix is available, so this entry is kept for 30 days and then removed automatically.

01

Who is affected

Apache Impala 4.0.0 and later (hs2-http interface).

02

Real-world impact

An attacker who can send a crafted SAML2 request can alter the user name in the authentication flow and act as any other user, gaining full access to data and services.

03

Why this severity

The CVSS score of 9.8 reflects that the flaw requires no authentication or user interaction, and it gives an attacker complete confidentiality, integrity, and availability compromise. The lack of a verification step in the final authentication step makes the vulnerability especially severe.

04

What to do about it

official fix available
recommended steps
  1. 011. Upgrade Apache Impala to version 4.5.2 or later.
  2. 022. Restart the Impala service to apply the update.

NVD-referenced vendor advisory

05

Timeline

  1. Sep 9, 2026 · 5d ago
    Published
    Disclosed and added to the National Vulnerability Database.
  2. Sep 10, 2026 · 3d ago
    Official fix available
    A vendor patch or mitigation now exists — see the remediation steps above.
06

How it’s attacked

Attack vectorNetwork (remote)
Attack complexityLow
Privileges requiredNone
User interactionNone needed
ScopeUnchanged
Confidentiality impactHigh
Integrity impactHigh
Availability impactHigh
07

References & advisories

(ai-assisted) A model wrote this summary from the official data, so double-check it against the source before you act on it. Read the official advisory →