A Missing Authentication for Critical Function vulnerability in longhorn of SUSE Longhorn allows attackers to connect to a longhorn-engine replica instance granting it the ability to read and write data to and from a replica that they should not have access to. This issue affects: SUSE Longhorn longhorn versions prior to 1.1.3; longhorn versions prior to 1.2.3v.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: suse

Published: 2021-12-17T08:55:14.523719Z

Updated: 2024-09-16T23:15:43.598Z

Reserved: 2021-07-19T00:00:00

Link: CVE-2021-36780

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-12-17T09:15:07.047

Modified: 2023-02-10T02:30:42.210

Link: CVE-2021-36780

cve-icon Redhat

No data.