Security Advisory

CVE-2022-24109

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-04-20 00:00:00
Last updated 2025-02-05 15:14:02
Assigner mitre
State PUBLISHED

Description

An issue was discovered in ONOS 2.5.1. To attack an intent installed by a normal user, a remote attacker can install a duplicate intent with a different key, and then remove the duplicate one. This will remove the flow rules of the intent, even though the intent still exists in the controller.