CVE-2019-16297: High severity linux foundation open network operating system vulnerability
An issue was discovered in Open Network Operating System (ONOS) 1.14. In the P4 tutorial application (org.onosproject.p4tutorial), the host event listener does not handle the following event types: HOSTMOVED, HOSTREMOVED, HOSTUPDATED. In combination with other applications, this could lead to the absence of intended code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2019-16297?
CVE-2019-16297 has not been assigned a specific CVSS score but indicates a significant issue within ONOS 1.14's P4 tutorial application.
How do I fix CVE-2019-16297?
To mitigate CVE-2019-16297, consider updating to a later version of Open Network Operating System that addresses the event listener handling issue.
What applications are affected by CVE-2019-16297?
CVE-2019-16297 affects the Open Network Operating System 1.14, specifically the P4 tutorial application.
What types of events does CVE-2019-16297 fail to handle?
CVE-2019-16297 fails to handle HOST_MOVED, HOST_REMOVED, and HOST_UPDATED event types.
What could be the potential impact of CVE-2019-16297?
CVE-2019-16297 could lead to unexpected behavior in network applications that rely on accurate host event handling.