yocto ▾
›
master ▾
›
vulnerability
›
CVE-2015-1612
Component Overview
Vulnerability Overview
Name
CVE-2015-1612
Source
NVD (
link
)
Debian (
link
)
Description
OpenFlow plugin for OpenDaylight before Helium SR3 allows remote attackers to spoof the SDN topology and affect the flow of data, related to the reuse of LLDP packets, aka "LLDP Relay."
CWEs
CWE-20
Published Date
Apr 4, 2017
Updated Date
Jun 17, 2026
Workaround
-
Advisories
http://www.internetsociety.org/sites/default/files/10_4_2.pdf
Technical Description
http://www.securityfocus.com/bid/73254
VDB Entry
https://cloudrouter.org/security/
Third Party Advisory
https://git.opendaylight.org/gerrit/#/c/16193/
Issue Tracking
https://git.opendaylight.org/gerrit/#/c/16208/
Issue Tracking
https://wiki.opendaylight.org/view/Security_Advisories#.5BModerate.5D_CVE-2015-1611_CVE-2015-1612_openflowplugin:_topology_spoofing_via_LLDP
Patch
http://www.internetsociety.org/sites/default/files/10_4_2.pdf
Technical Description
http://www.securityfocus.com/bid/73254
VDB Entry
https://cloudrouter.org/security/
Third Party Advisory
https://git.opendaylight.org/gerrit/#/c/16193/
Issue Tracking
https://git.opendaylight.org/gerrit/#/c/16208/
Issue Tracking
https://wiki.opendaylight.org/view/Security_Advisories#.5BModerate.5D_CVE-2015-1611_CVE-2015-1612_openflowplugin:_topology_spoofing_via_LLDP
Patch
Analysis
#
Affected Component
Analysis
openflow
False Positive
Vulnerability Ratings
#
7.5
other
5
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
openflow
yocto
kirkstone
1.0
Not Affected
openflow
yocto
scarthgap
1.0+git
False Positive