Vulnerability Description
hosttracker in OpenDaylight l2switch allows remote attackers to change the host location information by spoofing the MAC address, aka "topology spoofing."
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Opendaylight | L2Switch | - |
Related Weaknesses (CWE)
References
- http://www.internetsociety.org/sites/default/files/10_4_2.pdfTechnical Description
- http://www.securityfocus.com/bid/73251Third Party AdvisoryVDB Entry
- https://wiki.opendaylight.org/view/Security_Advisories#.5BModerate.5D_CVE-2015-1Vendor Advisory
- http://www.internetsociety.org/sites/default/files/10_4_2.pdfTechnical Description
- http://www.securityfocus.com/bid/73251Third Party AdvisoryVDB Entry
- https://wiki.opendaylight.org/view/Security_Advisories#.5BModerate.5D_CVE-2015-1Vendor Advisory
FAQ
What is CVE-2015-1610?
CVE-2015-1610 is a vulnerability with a CVSS score of 5.3 (MEDIUM). hosttracker in OpenDaylight l2switch allows remote attackers to change the host location information by spoofing the MAC address, aka "topology spoofing."
How severe is CVE-2015-1610?
CVE-2015-1610 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2015-1610?
Check the references section above for vendor advisories and patch information. Affected products include: Opendaylight L2Switch.