CVE-2024-51406

medium

Description

Floodlight SDN Open Flow Controller v.1.2 has an issue that allows local hosts to build fake LLDP packets that allow specific clusters to be missed by Floodlight, which in turn leads to missed hosts inside and outside the cluster.

References

https://ieeexplore.ieee.org/document/10246976

https://github.com/floodlight/floodlight/issues/870

https://github.com/floodlight/floodlight

Details

Source: Mitre, NVD

Published: 2024-11-01

Updated: 2024-11-04

CVSS v3

Base Score: 6.2

Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Severity: Medium