CVE-2023-52726
MEDIUMonos-ric-sdk-go 0.8.12 - Denial of Service via Infinite Loop in Subscribe Function
Title source: llmDescription
Open Networking Foundation SD-RAN ONOS onos-ric-sdk-go 0.8.12 allows infinite repetition of the processing of an error (in the Subscribe function implementation for the subscribed indication stream).
References (1)
Core 1
Core References
Exploit, Issue Tracking
https://github.com/onosproject/onos-ric-sdk-go/issues/133
Scores
CVSS v3
6.5
EPSS
0.0042
EPSS Percentile
33.5%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
yes
Technical Impact
partial
Details
CWE
CWE-835
Status
published
Products (1)
linuxfoundation/onos-ric-sdk-go
0.8.12
Published
Apr 30, 2024
Tracked Since
Feb 18, 2026