CVE-2015-6569: Null Pointer Dereference
Race condition in the LoadBalancer module in the Atlassian Floodlight Controller before 1.2 allows remote attackers to cause a denial of service (NULL pointer dereference and thread crash) via a state manipulation attack.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2015-6569?
CVE-2015-6569 refers to a race condition vulnerability in the LoadBalancer module in the Atlassian Floodlight Controller before version 1.2.
What is the impact of CVE-2015-6569?
The vulnerability allows remote attackers to cause a denial of service by exploiting the race condition, resulting in a NULL pointer dereference and thread crash.
How can remote attackers exploit CVE-2015-6569?
Remote attackers can exploit the vulnerability by performing a state manipulation attack.
What is the severity of CVE-2015-6569?
The severity of CVE-2015-6569 is medium, with a CVSS severity score of 5.9.
How can I fix CVE-2015-6569?
Update to Atlassian Floodlight Controller version 1.2 or later to fix the vulnerability.