PT-2014-7201 · Juniper Networks · Junos
Published
2014-10-14
·
Updated
2017-09-08
·
CVE-2014-6380
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Juniper Junos versions 11.4 before R11
Juniper Junos versions 12.1 before R9
Juniper Junos versions 12.1X44 before D30
Juniper Junos versions 12.1X45 before D20
Juniper Junos versions 12.1X46 before D15
Juniper Junos versions 12.1X47 before D10
Juniper Junos versions 12.2 before R8
Juniper Junos versions 12.2X50 before D70
Juniper Junos versions 12.3 before R6
Juniper Junos versions 13.1 before R4
Juniper Junos versions 13.1X49 before D55
Juniper Junos versions 13.1X50 before D30
Juniper Junos versions 13.2 before R4
Juniper Junos versions 13.2X50 before D20
Juniper Junos versions 13.2X51 before D15
Juniper Junos versions 13.2X52 before D15
Juniper Junos versions 13.3 before R1
Description
The issue allows remote attackers to cause a denial of service via a series of crafted packets when using an em interface to connect to a certain internal network. This can occur with CLNP fragmented packets when clns-routing or ESIS is configured, or with IPv4 or IPv6 fragmented packets.
Recommendations
For Juniper Junos versions 11.4 before R11, update to version R11 or later.
For Juniper Junos versions 12.1 before R9, update to version R9 or later.
For Juniper Junos versions 12.1X44 before D30, update to version D30 or later.
For Juniper Junos versions 12.1X45 before D20, update to version D20 or later.
For Juniper Junos versions 12.1X46 before D15, update to version D15 or later.
For Juniper Junos versions 12.1X47 before D10, update to version D10 or later.
For Juniper Junos versions 12.2 before R8, update to version R8 or later.
For Juniper Junos versions 12.2X50 before D70, update to version D70 or later.
For Juniper Junos versions 12.3 before R6, update to version R6 or later.
For Juniper Junos versions 13.1 before R4, update to version R4 or later.
For Juniper Junos versions 13.1X49 before D55, update to version D55 or later.
For Juniper Junos versions 13.1X50 before D30, update to version D30 or later.
For Juniper Junos versions 13.2 before R4, update to version R4 or later.
For Juniper Junos versions 13.2X50 before D20, update to version D20 or later.
For Juniper Junos versions 13.2X51 before D15, update to version D15 or later.
For Juniper Junos versions 13.2X52 before D15, update to version D15 or later.
For Juniper Junos versions 13.3 before R1, update to version R1 or later.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Junos