GHSA-49wf-927p-jpvj
Dashboard / Vulnerabilities / GHSA-49wf-927p-jpvj
Summary: OpenFlow plugin for OpenDaylight allows spoofing the SDN topology
Details: OpenFlow plugin for OpenDaylight before Helium SR3 allows remote attackers to spoof the SDN topology and affect the flow of data, related to "fake LLDP injection."
References: https://nvd.nist.gov/vuln/detail/CVE-2015-1611, https://git.opendaylight.org/gerrit/#/c/16193, https://git.opendaylight.org/gerrit/#/c/16208, https://github.com/opendaylight/openflowplugin, https://web.archive.org/web/20150510044305/https://wiki.opendaylight.org/view/Security_Advisories#.5BModerate.5D_CVE-2015-1611_CVE-2015-1612_openflowplugin:_topology_spoofing_via_LLDP, https://web.archive.org/web/20150701104709/https://www.internetsociety.org/sites/default/files/10_4_2.pdf
Affected packages
Package
Name: org.opendaylight.openflowplugin:openflowplugin
Purl: pkg:maven/org.opendaylight.openflowplugin/openflowplugin
Affected ranges
Type: ECOSYSTEM
Events:
