VYPR
Unrated severityNVD Advisory· Published Jan 15, 2019· Updated Sep 17, 2024

Junos OS: Kernel crash after processing specific incoming packet to the out of band management interface (CVE-2019-0011)

CVE-2019-0011

Description

The Junos OS kernel crashes after processing a specific incoming packet to the out of band management interface (such as fxp0, me0, em0, vme0) destined for another address. By continuously sending this type of packet, an attacker can repeatedly crash the kernel causing a sustained Denial of Service. Affected releases are Juniper Networks Junos OS: 17.2 versions prior to 17.2R1-S7, 17.2R3; 17.3 versions prior to 17.3R3-S3; 17.4 versions prior to 17.4R1-S4, 17.4R2; 17.2X75 versions prior to 17.2X75-D110; 18.1 versions prior to 18.1R2.

Affected products

2
  • Juniper Networks/Junosllm-fuzzy2 versions
    17.2 < 17.2R1-S7, 17.2R3; 17.3 < 17.3R3-S3; 17.4 < 17.4R1-S4, 17.4R2; 17.2X75 < 17.2X75-D110; 18.1 < 18.1R2+ 1 more
    • (no CPE)range: 17.2 < 17.2R1-S7, 17.2R3; 17.3 < 17.3R3-S3; 17.4 < 17.4R1-S4, 17.4R2; 17.2X75 < 17.2X75-D110; 18.1 < 18.1R2
    • (no CPE)range: 17.2

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.