CVE-2017-1000360: Null Pointer Dereference
Published Apr 24, 2017
·Updated
StreamCorruptedException and NullPointerException in OpenDaylight odl-mdsal-xsql. Controller launches exceptions in the console. Component: OpenDaylight odl-mdsal-xsql is vulnerable to this flaw. Version: The tested versions are OpenDaylight 3.3 and 4.0.
Affected Software
3 affected components
maven/org.opendaylight.controller:releasepom<=4.0
Opendaylight OpenDaylight=3.3
Opendaylight OpenDaylight=4.0
Event History
Apr 24, 2017
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
Description
May 13, 2022
Advisory Published
01:41 AM
Frequently Asked Questions
1
What is the severity of CVE-2017-1000360?
CVE-2017-1000360 has a medium severity rating due to its potential impact on application stability.
2
How do I fix CVE-2017-1000360?
To fix CVE-2017-1000360, upgrade OpenDaylight to versions higher than 4.0.
3
What components are affected by CVE-2017-1000360?
CVE-2017-1000360 affects the OpenDaylight odl-mdsal-xsql component.
4
What types of exceptions are caused by CVE-2017-1000360?
CVE-2017-1000360 can trigger StreamCorruptedException and NullPointerException.
5
Which versions of OpenDaylight are vulnerable to CVE-2017-1000360?
The vulnerable versions for CVE-2017-1000360 are OpenDaylight 3.3 and 4.0.