Home <23.10.6
affected
<24.10.2
affected
23.10.6 and onwards
unaffected
24.10.2 and onwards
unaffected
Description
Nokia SR Linux is vulnerable to an authentication vulnerability allowing unauthorized access to the JSON-RPC service. When exploited, an invalid validation allows JSON RPC access without providing valid authentication credentials.
Product status
<24.10.2
23.10.6 and onwards
24.10.2 and onwards
References
www.nokia.com/...ty/product-security-advisory/CVE-2025-0980/ (Nokia Product Security Advisory)