PT-2016-4678 · Juniper Networks · Junos

Publicado

2016-09-09

·

Atualizado

2017-09-01

·

CVE-2016-1263

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Juniper Junos OS versions prior to 12.1X46-D45 Juniper Junos OS versions prior to 12.1X47-D35 Juniper Junos OS versions prior to 12.3X48-D30 Juniper Junos OS versions prior to 13.3R9-S1 Juniper Junos OS versions prior to 14.1R7 Juniper Junos OS versions prior to 14.2R6 Juniper Junos OS versions prior to 15.1F2-S5 Juniper Junos OS versions prior to 15.1F4-S2 Juniper Junos OS versions prior to 15.1R2-S3 Juniper Junos OS versions prior to 15.1R3 Juniper Junos OS versions prior to 15.1X49-D40
Description The issue allows remote attackers to cause a denial of service, resulting in a kernel crash, via a crafted UDP packet destined to the interface IP address of a 64-bit OS device.
Recommendations For versions prior to 12.1X46-D45, update to 12.1X46-D45 or later. For versions prior to 12.1X47-D35, update to 12.1X47-D35 or later. For versions prior to 12.3X48-D30, update to 12.3X48-D30 or later. For versions prior to 13.3R9-S1, update to 13.3R9-S1 or later. For versions prior to 14.1R7, update to 14.1R7 or later. For versions prior to 14.2R6, update to 14.2R6 or later. For versions prior to 15.1F2-S5, update to 15.1F2-S5 or later. For versions prior to 15.1F4-S2, update to 15.1F4-S2 or later. For versions prior to 15.1R2-S3, update to 15.1R2-S3 or later. For versions prior to 15.1R3, update to 15.1R3 or later. For versions prior to 15.1X49-D40, update to 15.1X49-D40 or later.

Correção

DoS

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-1263

Produtos afetados

Junos