PT-2016-1749 · Juniper Networks · Junos

Publicado

2016-04-15

·

Atualizado

2016-04-20

·

CVE-2016-1269

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Juniper Junos OS versions prior to 12.1X44-D60 Juniper Junos OS versions prior to 12.1X46-D40 Juniper Junos OS versions prior to 12.1X47-D30 Juniper Junos OS versions prior to 12.3R11 Juniper Junos OS versions prior to 12.3X48-D20 Juniper Junos OS versions prior to 13.2R9 Juniper Junos OS versions prior to 13.2X51-D39 Juniper Junos OS versions prior to 13.3R8 Juniper Junos OS versions prior to 14.1R6 Juniper Junos OS versions prior to 14.1X53-D30 Juniper Junos OS versions prior to 14.2R4-S1 Juniper Junos OS versions prior to 15.1R2 Juniper Junos OS versions prior to 15.1X49-D30 Juniper Junos OS versions prior to 16.1R1
Description The issue is related to resource management errors in the Junos operating system. It allows remote attackers to cause a denial of service (socket consumption) via crafted TCP timestamps. This can be exploited by a remote attacker to cause a service disruption using specially formed TCP marks.
Recommendations For Juniper Junos OS versions prior to 12.1X44-D60, update to version 12.1X44-D60 or later. For Juniper Junos OS versions prior to 12.1X46-D40, update to version 12.1X46-D40 or later. For Juniper Junos OS versions prior to 12.1X47-D30, update to version 12.1X47-D30 or later. For Juniper Junos OS versions prior to 12.3R11, update to version 12.3R11 or later. For Juniper Junos OS versions prior to 12.3X48-D20, update to version 12.3X48-D20 or later. For Juniper Junos OS versions prior to 13.2R9, update to version 13.2R9 or later. For Juniper Junos OS versions prior to 13.2X51-D39, update to version 13.2X51-D39 or later. For Juniper Junos OS versions prior to 13.3R8, update to version 13.3R8 or later. For Juniper Junos OS versions prior to 14.1R6, update to version 14.1R6 or later. For Juniper Junos OS versions prior to 14.1X53-D30, update to version 14.1X53-D30 or later. For Juniper Junos OS versions prior to 14.2R4-S1, update to version 14.2R4-S1 or later. For Juniper Junos OS versions prior to 15.1R2, update to version 15.1R2 or later. For Juniper Junos OS versions prior to 15.1X49-D30, update to version 15.1X49-D30 or later. For Juniper Junos OS versions prior to 16.1R1, update to version 16.1R1 or later.

Correção

DoS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2016-01075
CVE-2016-1269

Produtos afetados

Junos