PT-2019-3483 · Juniper Networks · Junos
Publicado
2019-10-09
·
Atualizado
2021-09-14
·
CVE-2019-0059
CVSS v2.0
7.8
Alta
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Juniper Networks Junos OS versions prior to 18.1R2-S4
Juniper Networks Junos OS version 18.1R3-S1
Juniper Networks Junos OS version 18.1X75
Description
A memory leak issue in Juniper Networks Junos OS allows an attacker to cause a Denial of Service (DoS) to the device. This can be achieved by sending specific commands from a peered BGP host, which are then delivered to the vulnerable device.
Recommendations
For versions prior to 18.1R2-S4, update to 18.1R2-S4 or later.
For version 18.1R3-S1, update to a version later than 18.1R3-S1.
For version 18.1X75, consider disabling BGP protocol temporarily until a patch is available.
As a temporary workaround, consider restricting access to the BGP protocol to minimize the risk of exploitation.
Correção
DoS
Memory Leak
Resource Exhaustion
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Junos