Description
An issue in Atomix v3.1.5 allows a malicious Atomix node to remove states of ONOS storage via abuse of primitive operations.
Remediation
References
https://docs.google.com/presentation/d/1wJi4QJko5ZCdADuzmAG9ed-nQLyJVkLBJf6cylAL71A/edit?usp=sharing
Related Vulnerabilities
CVE-2020-2199 Vulnerability in maven package org.jenkins-ci.plugins:subversion
CVE-2022-29172 Vulnerability in npm package auth0-lock
CVE-2022-29167 Vulnerability in npm package hawk
CVE-2018-1000632 Vulnerability in maven package org.jenkins-ci.dom4j:dom4j
CVE-2022-35916 Vulnerability in npm package @openzeppelin/contracts-upgradeable