Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Will Kline

#15168of 53,634
17.7Total CVSS
Vulnerabilities · 2
High
1
Critical
1
PT-2021-21350
9.6
2021-12-17
Suse · Suse Longhorn · CVE-2021-36779
**Name of the Vulnerable Software and Affected Versions** SUSE Longhorn versions prior to 1.1.3 SUSE Longhorn versions prior to 1.2.3 **Description** A Missing Authentication for Critical Function issue in SUSE Longhorn allows any workload in the cluster to execute any binary present in the image on the host without authentication. **Recommendations** For SUSE Longhorn versions prior to 1.1.3, update to version 1.1.3 or later to resolve the issue. For SUSE Longhorn versions prior to 1.2.3, update to version 1.2.3 or later to resolve the issue.
PT-2021-21352
8.1
2021-12-17
Suse · Longhorn · CVE-2021-36780
**Name of the Vulnerable Software and Affected Versions** SUSE Longhorn longhorn versions prior to 1.1.3 longhorn versions prior to 1.2.3v **Description** A Missing Authentication for Critical Function issue in longhorn of SUSE Longhorn allows attackers to connect to a longhorn-engine replica instance, granting them the ability to read and write data to and from a replica that they should not have access to. **Recommendations** For SUSE Longhorn longhorn versions prior to 1.1.3, update to version 1.1.3 or later to resolve the issue. For longhorn versions prior to 1.2.3v, update to version 1.2.3v or later to resolve the issue.