An issue in Atomix v3.1.5 allows unauthorized Atomix nodes to become the lead node in a target cluster via manipulation of the variable terms in RaftContext.
References
Link | Resource |
---|---|
https://docs.google.com/presentation/d/1C_IpRfSU-9FMezcHCFZ-qg-15JO-W36yvqcnzI8sQs8/edit?usp=sharing | Exploit Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2021-12-16T19:08:23
Updated: 2021-12-16T19:08:23
Reserved: 2020-12-13T00:00:00
Link: CVE-2020-35211
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-12-16T20:15:07.333
Modified: 2021-12-21T14:49:21.410
Link: CVE-2020-35211
JSON object: View
Redhat Information
No data.
CWE