← Back to CVE List

CVE-2021-39235

Published: 2021-11-19T10:15Z
Last Modified: 2024-11-21T06:18Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
In Apache Ozone before 1.2.0, Ozone Datanode doesn't check the access mode parameter of the block token. Authenticated users with valid READ block token can do any write operation on the same block. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt