openflow: Denial of Service, Improper Authentication and Authorization, and Covert Channel in the OpenFlow handshake
Published May 24, 2018
9.8
CRITICALCVSS 3.0
EPSS 1.19%
Description
OpenFlow version 1.0 onwards contains a Denial of Service and Improper authorization vulnerability in OpenFlow handshake: The DPID (DataPath IDentifier) in the features_reply message are inherently trusted by the controller. that can result in Denial of Service, Unauthorized Access, Network Instability. This attack appear to be exploitable via Network connectivity: the attacker must first establish a transport connection with the OpenFlow controller and then initiate the OpenFlow handshake.
Affected products
No data.
- n/a
No data.
Red Hat OpenStack Platform 10 (Newton)
opendaylight
Will not fix
Red Hat OpenStack Platform 11 (Ocata)
opendaylight
Will not fix
Red Hat OpenStack Platform 12 (Pike)
opendaylight
Will not fix
Red Hat OpenStack Platform 13 (Queens)
opendaylight
Will not fix
Red Hat OpenStack Platform 8 (Liberty)
opendaylight
Will not fix
Red Hat OpenStack Platform 9 (Mitaka)
opendaylight
Will not fix
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat OpenStack Platform 10 (Newton) | opendaylight | Will not fix | n/a |
| Red Hat OpenStack Platform 11 (Ocata) | opendaylight | Will not fix | n/a |
| Red Hat OpenStack Platform 12 (Pike) | opendaylight | Will not fix | n/a |
| Red Hat OpenStack Platform 13 (Queens) | opendaylight | Will not fix | n/a |
| Red Hat OpenStack Platform 8 (Liberty) | opendaylight | Will not fix | n/a |
| Red Hat OpenStack Platform 9 (Mitaka) | opendaylight | Will not fix | n/a |
No package ranges for this CVE.
Remediation
Red Hat mitigation
Enable TLS in OpenFlow plugin. Upstream documentation is a useful resource. https://wiki.opendaylight.org/view/OpenDaylight_OpenFlow_Plugin:_TLS_Support
References (7)
- http://seclists.org/oss-sec/2018/q2/99
- http://users.sec.t-labs.tu-berlin.de/~hashkash/openflow/BrianOnosSecurityRequest.pdf x_refsource_MISCMailing ListThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2018-1000155 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1578652 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2018-1861 Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2018-1000155
- https://www.cve.org/CVERecord?id=CVE-2018-1000155
| Link | Providers | Tags |
|---|---|---|
| http://seclists.org/oss-sec/2018/q2/99 | ||
| http://users.sec.t-labs.tu-berlin.de/~hashkash/openflow/BrianOnosSecurityRequest.pdf | x_refsource_MISCMailing ListThird Party Advisory | |
| https://access.redhat.com/security/cve/CVE-2018-1000155 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1578652 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2018-1861 | Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2018-1000155 | ||
| https://www.cve.org/CVERecord?id=CVE-2018-1000155 |
Change history (0)
No recorded changes yet.