CVE-2018-12691

Time-of-check to time-of-use (TOCTOU) race condition in org.onosproject.acl (aka the access control application) in ONOS v1.13 and earlier allows attackers to bypass network access control via data plane packet injection.
References
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:onosproject:onos:*:*:*:*:*:*:*:*

Information

Published : 2018-07-05 11:29

Updated : 2018-09-04 08:59


NVD link : CVE-2018-12691

Mitre link : CVE-2018-12691


JSON object : View

CWE
CWE-362

Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')

Advertisement

dedicated server usa

Products Affected

onosproject

  • onos