OpenDaylight OpenFlow Plugin and Controller Multiple Denial of Service Vulnerabilities
BID:102736
CVE-2017-1000411 |Info
OpenDaylight OpenFlow Plugin and Controller Multiple Denial of Service Vulnerabilities
| Bugtraq ID: | 102736 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2017-1000411 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 16 2018 12:00AM |
| Updated: | Jan 16 2018 12:00AM |
| Credit: | Vaibhav Hemant Dixit |
| Vulnerable: |
Redhat OpenStack Platform 9.0 Redhat OpenStack Platform 8.0 (Liberty) Redhat OpenStack Platform 12 Redhat OpenStack Platform 11 Redhat OpenStack Platform 10 Opendaylight OpenFlow 0 Opendaylight OpenDaylight Controller 0 |
| Not Vulnerable: | |
Discussion
OpenDaylight OpenFlow Plugin and Controller Multiple Denial of Service Vulnerabilities
OpenDaylight OpenFlow Plugin and Controller are prone to multiple denial-of-service vulnerabilities.
An attacker can exploit these issues to consume memory resources and cause a denial-of-service condition.
OpenDaylight OpenFlow Plugin and Controller are prone to multiple denial-of-service vulnerabilities.
An attacker can exploit these issues to consume memory resources and cause a denial-of-service condition.
Exploit / POC
OpenDaylight OpenFlow Plugin and Controller Multiple Denial of Service Vulnerabilities
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
OpenDaylight OpenFlow Plugin and Controller Multiple Denial of Service Vulnerabilities
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution:
Currently, we are not aware of any vendor-supplied patches. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
References
OpenDaylight OpenFlow Plugin and Controller Multiple Denial of Service Vulnerabilities
References:
References:
- [Opendaylight-announce] opendaylight-advisory: Multiple "expired" flows consume (OpenDaylight)
- Bug 1519845 - (CVE-2017-1000411) CVE-2017-1000411 opendaylight: Controller denia (Red Hat Bugzilla)
- CVE-2017-1000411 (Red Hat Bugzilla)
- OpenDaylight Homepage (OpenDaylight)