PT-2014-3709 · Juniper Networks · Junos
Published
2014-01-14
·
Updated
2014-01-15
·
CVE-2014-0613
CVSS v2.0
7.1
High
| Vector | AV:N/AC:M/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Junos versions 10.4 through 10.4R15
Junos versions 11.4 through 11.4R9
Junos versions 12.1R through 12.1R7-S1
Junos versions 12.1X44 through 12.1X44-D29
Junos versions 12.1X45 through 12.1X45-D19
Junos versions 12.1X46 through 12.1X46-D9
Junos versions 12.2 through 12.2R6
Junos versions 12.3 through 12.3R4
Junos versions 13.1 through 13.1R2
Junos versions 13.2 through 13.2R1
Junos version 13.3
Description
The issue allows remote attackers to cause a denial of service, specifically memory consumption, via unspecified vectors when xnm-ssl or xnm-clear-text is enabled.
Recommendations
For Junos versions 10.4 through 10.4R15, update to version 10.4R16 or later.
For Junos versions 11.4 through 11.4R9, update to version 11.4R10 or later.
For Junos versions 12.1R through 12.1R7-S1, update to version 12.1R8-S2 or later.
For Junos versions 12.1X44 through 12.1X44-D29, update to version 12.1X44-D30 or later.
For Junos versions 12.1X45 through 12.1X45-D19, update to version 12.1X45-D20 or later.
For Junos versions 12.1X46 through 12.1X46-D9, update to version 12.1X46-D10 or later.
For Junos versions 12.2 through 12.2R6, update to version 12.2R7 or later.
For Junos versions 12.3 through 12.3R4, update to version 12.3R5 or later.
For Junos versions 13.1 through 13.1R2, update to version 13.1R3-S1 or later.
For Junos versions 13.2 through 13.2R1, update to version 13.2R2-S2 or later.
For Junos version 13.3, update to version 13.3R1 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Junos