PT-2024-14715 · Open Networking Foundation · Onos-Ric-Sdk-Go

Ty3Gxo

·

Published

2024-04-29

·

Updated

2025-07-14

·

CVE-2023-52726

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
Name of the Vulnerable Software and Affected Versions Open Networking Foundation SD-RAN ONOS onos-ric-sdk-go version 0.8.12
Description The issue allows for infinite repetition of the processing of an error in the Subscribe function implementation for the subscribed indication stream.
Recommendations For version 0.8.12, consider disabling the Subscribe function until a patch is available to prevent infinite error processing repetition. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Infinite Loop

Weakness Enumeration

Related Identifiers

CVE-2023-52726

Affected Products

Onos-Ric-Sdk-Go