cve/2019/CVE-2019-11255.md
2024-06-18 02:51:15 +02:00

1.2 KiB

CVE-2019-11255

Description

Improper input validation in Kubernetes CSI sidecar containers for external-provisioner (<v0.4.3, <v1.0.2, v1.1, <v1.2.2, <v1.3.1), external-snapshotter (<v0.4.2, <v1.0.2, v1.1, <1.2.2), and external-resizer (v0.1, v0.2) could result in unauthorized PersistentVolume data access or volume mutation during snapshot, restore from snapshot, cloning and resizing operations.

POC

Reference

Github

No PoCs found on GitHub currently.