« Back to list

Linuxfoundation

Linuxfoundation Open Network Operating System: vulnerabilities and CVEs

Linuxfoundation Open Network Operating System has 11 published vulnerabilities, 0 of them in the last 12 months. 2 are rated critical and 0 are listed by CISA as actively exploited.

CVEs11
Last 12 months0
Critical2
Actively exploited0

All vulnerabilities in the catalogue →⭐ Follow this technology

Latest vulnerabilities

CVESeverityEPSSActive exploitationPublishedDescription
CVE-2019-16302High (7.5)1.7%—Feb 20, 2020
An issue was discovered in Open Network Operating System (ONOS) 1.14. In the Ethernet VPN application (org.onosproject.evpnopenflow), the host event listener does not handle the following event types: HOST_MOVED,…
CVE-2019-16301High (7.5)1.7%—Feb 20, 2020
An issue was discovered in Open Network Operating System (ONOS) 1.14. In the virtual tenant network application (org.onosproject.vtn), the host event listener does not handle the following event types: HOST_MOVED. In…
CVE-2019-16300High (7.5)2.0%—Feb 20, 2020
An issue was discovered in Open Network Operating System (ONOS) 1.14. In the access control application (org.onosproject.acl), the host event listener does not handle the following event types: HOST_REMOVED. In…
CVE-2019-16299High (7.5)1.7%—Feb 20, 2020
An issue was discovered in Open Network Operating System (ONOS) 1.14. In the mobility application (org.onosproject.mobility), the host event listener does not handle the following event types: HOST_ADDED, HOST_REMOVED,…
CVE-2019-16298High (7.5)1.7%—Feb 20, 2020
An issue was discovered in Open Network Operating System (ONOS) 1.14. In the virtual broadband network gateway application (org.onosproject.virtualbng), the host event listener does not handle the following event types:…
CVE-2019-16297High (7.5)1.7%—Feb 20, 2020
An issue was discovered in Open Network Operating System (ONOS) 1.14. In the P4 tutorial application (org.onosproject.p4tutorial), the host event listener does not handle the following event types: HOST_MOVED,…
CVE-2019-1010234Critical (9.8)1.7%—Jul 22, 2019
The Linux Foundation ONOS 1.15.0 and ealier is affected by: Improper Input Validation. The impact is: The attacker can remotely execute any commands by sending malicious http request to the controller. The component is:…
CVE-2019-1010245Critical (9.8)3.6%—Jul 19, 2019
The Linux Foundation ONOS SDN Controller 1.15 and earlier versions is affected by: Improper Input Validation. The impact is: A remote attacker can execute arbitrary commands on the controller. The component is:…
CVE-2019-1010252Medium (4.9)1.1%—Jul 18, 2019
The Linux Foundation ONOS 2.0.0 and earlier is affected by: Poor Input-validation. The impact is: A network administrator (or attacker) can install unintended flow rules in the switch by mistake. The component is:…
CVE-2019-1010250Medium (4.9)1.1%—Jul 18, 2019
The Linux Foundation ONOS 2.0.0 and earlier is affected by: Poor Input-validation. The impact is: A network administrator (or attacker) can install unintended flow rules in the switch by mistake. The component is:…
CVE-2019-1010249Medium (4.9)1.1%—Jul 18, 2019
The Linux Foundation ONOS 2.0.0 and earlier is affected by: Integer Overflow. The impact is: A network administrator (or attacker) can install unintended flow rules in the switch by mistake. The component is:…

Other products by Linuxfoundation