PT-2016-1745 · Juniper Networks · Junos
Published
2016-04-15
·
Updated
2016-04-20
·
CVE-2016-1274
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Juniper Junos OS versions 14.1X53 before 14.1X53-D30 on QFX Series switches
Description
The issue is related to incorrect data processing in the Junos operating system. It can be exploited by a remote attacker to cause a denial of service by sending a high rate of VXLAN packets, potentially leading to a PFE panic.
Recommendations
For Juniper Junos OS versions 14.1X53 before 14.1X53-D30 on QFX Series switches, update to version 14.1X53-D30 or later to resolve the issue. As a temporary workaround, consider restricting the rate of VXLAN packets to minimize the risk of exploitation.
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Junos