Vulnerability Description
DOMRpcImplementationNotAvailableException when sending Port-Status packets to OpenDaylight. Controller launches exceptions and consumes more CPU resources. Component: OpenDaylight is vulnerable to this flaw. Version: The tested versions are OpenDaylight 3.3 and 4.0.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Opendaylight | Opendaylight | 3.3 |
References
- https://aaltodoc.aalto.fi/bitstream/handle/123456789/21584/master_Bidaj_Andi_201ExploitTechnical DescriptionThird Party Advisory
- https://aaltodoc.aalto.fi/bitstream/handle/123456789/21584/master_Bidaj_Andi_201ExploitTechnical DescriptionThird Party Advisory
FAQ
What is CVE-2017-1000361?
CVE-2017-1000361 is a vulnerability with a CVSS score of 7.5 (HIGH). DOMRpcImplementationNotAvailableException when sending Port-Status packets to OpenDaylight. Controller launches exceptions and consumes more CPU resources. Component: OpenDaylight is vulnerable to thi...
How severe is CVE-2017-1000361?
CVE-2017-1000361 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2017-1000361?
Check the references section above for vendor advisories and patch information. Affected products include: Opendaylight Opendaylight.