First published: Tue Apr 04 2017(Updated: )
OpenFlow plugin for OpenDaylight before Helium SR3 allows remote attackers to spoof the SDN topology and affect the flow of data, related to "fake LLDP injection."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
OpenDaylight | ||
maven/org.opendaylight.openflowplugin:openflowplugin | <0.0.6-Helium-SR3 | 0.0.6-Helium-SR3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-1611 has a medium severity level due to its potential impact on the SDN topology.
To fix CVE-2015-1611, upgrade to OpenDaylight Helium SR3 or a later version.
CVE-2015-1611 affects users of the OpenFlow plugin for OpenDaylight versions prior to Helium SR3.
CVE-2015-1611 is associated with remote spoofing attacks that can affect the flow of data.
The impact of CVE-2015-1611 on network security includes potential unauthorized manipulation of SDN topology.