PT-2007-7230 · Juniper Networks · Junos

Published

2007-12-15

·

Updated

2025-04-03

·

CVE-2007-6372

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Juniper JUNOS versions 7.3 through 8.4
Description The issue allows remote attackers to cause a denial of service, resulting in a crash, by sending malformed BGP packets. This could be triggered by BGP UPDATE packets that cause session flapping.
Recommendations For versions 7.3 through 8.4, consider restricting access to BGP UPDATE packets to minimize the risk of exploitation. As a temporary workaround, limiting the impact of session flapping may help mitigate the issue until a fix is available.

Fix

DoS

RCE

Weakness Enumeration

Related Identifiers

CVE-2007-6372

Affected Products

Junos