7.5
CVSSv3

CVE-2017-1000357

Published: 24/04/2017 Updated: 03/10/2019
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Denial of Service attack when the switch rejects to receive packets from the controller. Component: This vulnerability affects OpenDaylight odl-l2switch-switch, which is the feature responsible for the OpenFlow communication. Version: OpenDaylight versions 3.3 (Lithium-SR3), 3.4 (Lithium-SR4), 4.0 (Beryllium), 4.1 (Beryllium-SR1), 4.2 (Beryllium-SR2), and 4.4 (Beryllium-SR4) are affected by this flaw. Java version is openjdk version 1.8.0_91.

Vulnerable Product Search on Vulmon Subscribe to Product

opendaylight opendaylight 3.3

opendaylight opendaylight 4.0

Vendor Advisories

Denial of Service attack when the switch rejects to receive packets from the controller Component: This vulnerability affects OpenDaylight odl-l2switch-switch, which is the feature responsible for the OpenFlow communication Version: OpenDaylight versions 33 (Lithium-SR3), 34 (Lithium-SR4), 40 (Beryllium), 41 (Beryllium-SR1), 42 (Beryllium-SR ...