Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

Open Networking Foundation (ONF) — Vulnerabilities & Security Advisories 37

Browse all 37 CVE security advisories affecting Open Networking Foundation (ONF). AI-powered Chinese analysis, POCs, and references for each vulnerability.

The Open Networking Foundation (ONF) is a non-profit consortium dedicated to advancing open, programmable networking through standards like OpenFlow and ONOS. Its primary objective involves defining architectures for software-defined networking (SDN) and network function virtualization (NFV), enabling telecom operators to decouple hardware from software. Security assessments have identified 37 Common Vulnerabilities and Exposures (CVEs) associated with ONF-related projects, predominantly affecting the ONOS network operating system. Historically, these vulnerabilities frequently manifest as remote code execution (RCE) and privilege escalation flaws, often stemming from insufficient input validation in REST APIs or improper access controls within the controller’s core modules. While no single catastrophic public breach has defined the organization’s history, the accumulation of these CVEs highlights persistent challenges in securing complex, distributed control planes. The ONF continues to address these issues through rigorous code reviews and security patches, aiming to stabilize the foundational software used by global infrastructure providers.

Found 37 results / 37 Clear Filters
Top products by Open Networking Foundation (ONF): libfluid
CVE ID Title CVSS Severity Published
CVE-2024-31198 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 5.3 Medium 2024-09-18
CVE-2024-31197 Improper Null Termination in libfluid_msg library — libfluid CWE-170 5.3 Medium 2024-09-18
CVE-2024-31196 NULL Pointer Dereference in libfluid_msg library — libfluid CWE-690 5.3 Medium 2024-09-18
CVE-2024-31195 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31194 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31193 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31192 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31191 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31190 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31189 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31188 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31187 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31186 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31185 NULL Pointer Dereference in libfluid_msg library — libfluid CWE-690 5.3 Medium 2024-09-18
CVE-2024-31184 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31183 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31182 NULL Pointer Dereference in libfluid_msg library — libfluid CWE-690 5.3 Medium 2024-09-18
CVE-2024-31181 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31180 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31179 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31178 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31177 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31176 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31175 NULL Pointer Dereference in libfluid_msg library — libfluid CWE-690 5.3 Medium 2024-09-18
CVE-2024-31174 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31173 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31172 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31171 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31170 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18
CVE-2024-31169 Out-of-bounds Read in libfluid_msg library — libfluid CWE-125 6.5 Medium 2024-09-18

This page lists every published CVE security advisory associated with Open Networking Foundation (ONF). Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.