cvedb.io
CVE-2017-1000357
HIGH · CVSS 7.5
EPSS exploitation probability: 0%
Published 2017-04-24T16:59:00.190 · Last modified 2026-06-17T00:59:01.123

Summary

Denial of Service attack when the switch rejects to receive packets from the controller. Component: This vulnerability affects OpenDaylight odl-l2switch-switch, which is the feature responsible for the OpenFlow communication. Version: OpenDaylight versions 3.3 (Lithium-SR3), 3.4 (Lithium-SR4), 4.0 (Beryllium), 4.1 (Beryllium-SR1), 4.2 (Beryllium-SR2), and 4.4 (Beryllium-SR4) are affected by this flaw. Java version is openjdk version 1.8.0_91.

Affected products

opendaylight — opendaylight

Does this affect you?

Add your gear to cvedb and we'll alert you only when opendaylight ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.