Limited secret space in LLDP packets used in onos v2.7.0 allows attackers to obtain the private key via a bruteforce attack. Attackers are able to leverage this vulnerability into creating crafted LLDP packets.
| Software | From | Fixed in |
|---|---|---|
| opennetworking / onos | 2.7.0 | 2.7.0.x |