Linuxfoundation
Linuxfoundation Open Network Operating System: vulnerabilities and CVEs
Linuxfoundation Open Network Operating System has 11 published vulnerabilities, 0 of them in the last 12 months. 2 are rated critical and 0 are listed by CISA as actively exploited.
CVEs11
Last 12 months0
Critical2
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2019-16302 | High (7.5) | 1.7% | — | Feb 20, 2020 | An issue was discovered in Open Network Operating System (ONOS) 1.14. In the Ethernet VPN application (org.onosproject.evpnopenflow), the host event listener does not handle the following event types: HOST_MOVED,… |
| CVE-2019-16301 | High (7.5) | 1.7% | — | Feb 20, 2020 | An issue was discovered in Open Network Operating System (ONOS) 1.14. In the virtual tenant network application (org.onosproject.vtn), the host event listener does not handle the following event types: HOST_MOVED. In… |
| CVE-2019-16300 | High (7.5) | 2.0% | — | Feb 20, 2020 | An issue was discovered in Open Network Operating System (ONOS) 1.14. In the access control application (org.onosproject.acl), the host event listener does not handle the following event types: HOST_REMOVED. In… |
| CVE-2019-16299 | High (7.5) | 1.7% | — | Feb 20, 2020 | An issue was discovered in Open Network Operating System (ONOS) 1.14. In the mobility application (org.onosproject.mobility), the host event listener does not handle the following event types: HOST_ADDED, HOST_REMOVED,… |
| CVE-2019-16298 | High (7.5) | 1.7% | — | Feb 20, 2020 | An issue was discovered in Open Network Operating System (ONOS) 1.14. In the virtual broadband network gateway application (org.onosproject.virtualbng), the host event listener does not handle the following event types:… |
| CVE-2019-16297 | High (7.5) | 1.7% | — | Feb 20, 2020 | An issue was discovered in Open Network Operating System (ONOS) 1.14. In the P4 tutorial application (org.onosproject.p4tutorial), the host event listener does not handle the following event types: HOST_MOVED,… |
| CVE-2019-1010234 | Critical (9.8) | 1.7% | — | Jul 22, 2019 | The Linux Foundation ONOS 1.15.0 and ealier is affected by: Improper Input Validation. The impact is: The attacker can remotely execute any commands by sending malicious http request to the controller. The component is:… |
| CVE-2019-1010245 | Critical (9.8) | 3.6% | — | Jul 19, 2019 | The Linux Foundation ONOS SDN Controller 1.15 and earlier versions is affected by: Improper Input Validation. The impact is: A remote attacker can execute arbitrary commands on the controller. The component is:… |
| CVE-2019-1010252 | Medium (4.9) | 1.1% | — | Jul 18, 2019 | The Linux Foundation ONOS 2.0.0 and earlier is affected by: Poor Input-validation. The impact is: A network administrator (or attacker) can install unintended flow rules in the switch by mistake. The component is:… |
| CVE-2019-1010250 | Medium (4.9) | 1.1% | — | Jul 18, 2019 | The Linux Foundation ONOS 2.0.0 and earlier is affected by: Poor Input-validation. The impact is: A network administrator (or attacker) can install unintended flow rules in the switch by mistake. The component is:… |
| CVE-2019-1010249 | Medium (4.9) | 1.1% | — | Jul 18, 2019 | The Linux Foundation ONOS 2.0.0 and earlier is affected by: Integer Overflow. The impact is: A network administrator (or attacker) can install unintended flow rules in the switch by mistake. The component is:… |