A vulnerability was found in Hadoop 1.0.3 was reported to contain a symlink vulnerability, caused by the default directory for PID files in conf/hadoop-env.sh. Reference: https://seclists.org/fulldisclosure/2012/Jul/3 https://security-tracker.debian.org/tracker/CVE-2012-2945
Satellite 5.8 is currently in Maintenance Support 2 phase that means we're addressing only Critical Impact Security Advisories. Referance -- https://access.redhat.com/support/policy/updates/satellite
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2012-2945