An issue in onos v2.7.0 allows attackers to trigger unexpected behavior within a device connected to a legacy switch via changing the link type from indirect to direct.
An unauthenticated attacker remotely manipulates the network link type in ONOS, changing it from indirect to direct mode. Improper handling of this change (CWE-670 – incorrectly implemented control logic) causes the ONOS controller to process the network state in a manner inconsistent with expectations, resulting in unexpected behavior of devices connected to legacy switches. The attack vector is network-based, requires no privileges or user interaction.
An attacker can compromise the integrity of network configuration and cause disruption to the availability of devices connected to legacy switches managed by the ONOS controller, which may lead to network infrastructure outages.
Patches available from the vendor should be applied according to references. As a temporary workaround, it is recommended to restrict network access to the ONOS management interface exclusively to trusted hosts and to monitor changes in link types on the controller.
ONOS (Open Network Operating System) version 2.7.0 by Opennetworking
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:HOpennetworking Onos
APPOpennetworking2.7.0
Related vulnerabilities
ONOS v2.7.0 — fałszowanie adresów IP/MAC umożliwiające atak man-in-the-middle
Niebezpieczna deserializacja pakietów LLDP w ONOS v2.7.0 (RCE)
ONOS 2.5.1 — błędna obsługa wielkości liter w ID urządzeń powoduje niespójność reguł sieciowych
ONOS: Nieprawidłowa obsługa dużych numerów portów w mechanizmie Intent
Limited secret space in LLDP packets used in onos v2.7.0 allows attackers to obtain the private key via a brut...