PT-2015-2441 · Juniper Networks · Junos
Published
2015-10-19
·
Updated
2015-10-20
·
CVE-2015-7752
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Junos versions prior to 12.1X44-D50
Junos versions prior to 12.1X46-D35
Junos versions prior to 12.1X47-D25
Junos versions prior to 12.3R10
Junos versions prior to 12.3X48-D10
Junos versions prior to 13.2R8
Junos versions prior to 13.2X51-D35
Junos versions prior to 13.3R6
Junos versions prior to 14.1R5
Junos versions prior to 14.1X53-D25
Junos versions prior to 14.2R3
Junos versions prior to 15.1R1
Junos versions prior to 15.1X49-D20
Description
The issue is related to resource management errors in the SSH server of the Junos operating system. It can be exploited by a remote attacker to cause a denial of service, specifically by consuming CPU resources via unspecified SSH traffic.
Recommendations
For versions prior to 12.1X44-D50, update to 12.1X44-D50 or later.
For versions prior to 12.1X46-D35, update to 12.1X46-D35 or later.
For versions prior to 12.1X47-D25, update to 12.1X47-D25 or later.
For versions prior to 12.3R10, update to 12.3R10 or later.
For versions prior to 12.3X48-D10, update to 12.3X48-D10 or later.
For versions prior to 13.2R8, update to 13.2R8 or later.
For versions prior to 13.2X51-D35, update to 13.2X51-D35 or later.
For versions prior to 13.3R6, update to 13.3R6 or later.
For versions prior to 14.1R5, update to 14.1R5 or later.
For versions prior to 14.1X53-D25, update to 14.1X53-D25 or later.
For versions prior to 14.2R3, update to 14.2R3 or later.
For versions prior to 15.1R1, update to 15.1R1 or later.
For versions prior to 15.1X49-D20, update to 15.1X49-D20 or later.
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Junos