Security Advisory

CVE-2021-39231

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-11-19 09:20:17
Last updated 2024-08-04 01:58:18
Assigner apache
State PUBLISHED

Description

In Apache Ozone versions prior to 1.2.0, Various internal server-to-server RPC endpoints are available for connections, making it possible for an attacker to download raw data from Datanode and Ozone manager and modify Ratis replication configuration.