PT-2018-8567 · Juniper Networks · Junos

Publicado

2018-04-11

·

Atualizado

2019-10-09

·

CVE-2018-0017

CVSS v3.1

7.5

Alta

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Junos OS versions prior to 12.1X46-D72 Junos OS versions prior to 12.3X48-D55 Junos OS versions prior to 15.1X49-D90
Description: A vulnerability in the Network Address Translation - Protocol Translation (NAT-PT) feature of Junos OS on SRX series devices may allow a certain valid IPv6 packet to crash the flowd daemon. Repeated crashes of the flowd daemon can result in an extended denial of service condition for the SRX device.
Recommendations: For versions prior to 12.1X46-D72, update to 12.1X46-D72 or later. For versions prior to 12.3X48-D55, update to 12.3X48-D55 or later. For versions prior to 15.1X49-D90, update to 15.1X49-D90 or later.

Correção

DoS

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-0017

Produtos afetados

Junos