Description
An issue in Atomix v3.1.5 allows a malicious Atomix node to remove states of ONOS storage via abuse of primitive operations.
Remediation
References
https://docs.google.com/presentation/d/1wJi4QJko5ZCdADuzmAG9ed-nQLyJVkLBJf6cylAL71A/edit?usp=sharing
Related Vulnerabilities
CVE-2020-28442 Vulnerability in npm package js-data
CVE-2020-4038 Vulnerability in maven package org.webjars.npm:graphql-playground-html
CVE-2015-3250 Vulnerability in maven package org.apache.directory.api:api-all
CVE-2020-10673 Vulnerability in maven package com.fasterxml.jackson.core:jackson-databind
CVE-2021-24033 Vulnerability in maven package org.webjars.npm:react-dev-utils