Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Open Networking Foundation (ONF) — Vulnerabilities & Security Advisories 37

Browse all 37 CVE security advisories affecting Open Networking Foundation (ONF). AI-powered Chinese analysis, POCs, and references for each vulnerability.

The Open Networking Foundation (ONF) is a non-profit consortium dedicated to advancing open, programmable networking through standards like OpenFlow and ONOS. Its primary objective involves defining architectures for software-defined networking (SDN) and network function virtualization (NFV), enabling telecom operators to decouple hardware from software. Security assessments have identified 37 Common Vulnerabilities and Exposures (CVEs) associated with ONF-related projects, predominantly affecting the ONOS network operating system. Historically, these vulnerabilities frequently manifest as remote code execution (RCE) and privilege escalation flaws, often stemming from insufficient input validation in REST APIs or improper access controls within the controller’s core modules. While no single catastrophic public breach has defined the organization’s history, the accumulation of these CVEs highlights persistent challenges in securing complex, distributed control planes. The ONF continues to address these issues through rigorous code reviews and security patches, aiming to stabilize the foundational software used by global infrastructure providers.

Top products by Open Networking Foundation (ONF): libfluid
CVE IDTitleCVSSSeverityPublished
CVE-2024-31198 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 5.3 Medium2024-09-18
CVE-2024-31197 Improper Null Termination in libfluid_msg library — libfluidCWE-170 5.3 Medium2024-09-18
CVE-2024-31196 NULL Pointer Dereference in libfluid_msg library — libfluidCWE-690 5.3 Medium2024-09-18
CVE-2024-31195 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31194 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31193 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31192 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31191 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31190 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31189 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31188 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31187 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31186 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31185 NULL Pointer Dereference in libfluid_msg library — libfluidCWE-690 5.3 Medium2024-09-18
CVE-2024-31184 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31183 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31182 NULL Pointer Dereference in libfluid_msg library — libfluidCWE-690 5.3 Medium2024-09-18
CVE-2024-31181 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31180 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31179 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31178 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31177 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31176 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31175 NULL Pointer Dereference in libfluid_msg library — libfluidCWE-690 5.3 Medium2024-09-18
CVE-2024-31174 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31173 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31172 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31171 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31170 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18
CVE-2024-31169 Out-of-bounds Read in libfluid_msg library — libfluidCWE-125 6.5 Medium2024-09-18

This page lists every published CVE security advisory associated with Open Networking Foundation (ONF). Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.