Facuet maintains Ryu, a narrowly scoped but strategically positioned OpenFlow controller and networking library that is embedded across network orchestration and software-defined networking deployments. The vendor's vulnerability disclosures center on resource-consumption and control-flow weaknesses—including infinite loops, unchecked loop conditions, and uncontrolled resource-consumption flaws—that reflect the parsing and state-management demands of network protocol handling. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Facuet over time
Signals from CVEs in this vendor scope (7 CVEs).
7 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-34489HIGH OFPHello in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via length=0. | May 5, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-34488HIGH OFPMultipartReply in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via b.length=0. | May 5, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-34487HIGH OFPFlowStats in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via inst.length=0. | May 5, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-34486HIGH OFPPacketQueue in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via OFPQueueProp.len=0. | May 5, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-34483HIGH OFPGroupDescStats in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via OFPBucket.len=0. | May 5, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-28732HIGH An issue was discovered in OFPMatch in parser.py in Faucet SDN Ryu version 4.34, allows remote attackers to cause a denial of service (DoS) (infinite loop). | Apr 8, 2024 | 7.5 | 21 | NO | NO |
CVE-2024-34484MEDIUM OFPBucket in parser.py in Faucet SDN Ryu 4.34 allows attackers to cause a denial of service (infinite loop) via action.len=0. | May 5, 2024 | 5.3 | 17 | NO | NO |
Signals from CVEs in this vendor scope (7 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Facuet.
Media articles that mention a CVE ID that affects a product developed by Facuet — matched by CVE ID, not by vendor name.