PT-2017-10950 · Opendaylight · Opendaylight

Published

2017-04-24

·

Updated

2022-05-13

·

CVE-2017-1000360

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions OpenDaylight versions 3.3 through 4.0
Description The issue concerns the OpenDaylight odl-mdsal-xsql component, which is prone to StreamCorruptedException and NullPointerException. This results in the controller launching exceptions in the console.
Recommendations For OpenDaylight versions 3.3 through 4.0, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

NULL Pointer Dereference

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-1000360
GHSA-GJQ3-997P-HG6F

Affected Products

Opendaylight