PT-2016-4673 · Juniper Networks · Junos

Published

2016-01-15

·

Updated

2016-12-03

·

CVE-2016-1256

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions Juniper Junos OS versions prior to 12.1X44-D55 Juniper Junos OS versions 12.1X46 prior to 12.1X46-D40 Juniper Junos OS versions 12.1X47 prior to 12.1X47-D25 Juniper Junos OS versions 12.3 prior to 12.3R10 Juniper Junos OS versions 12.3X48 prior to 12.3X48-D20 Juniper Junos OS versions 13.2 prior to 13.2R8 Juniper Junos OS versions 13.2X51 prior to 13.2X51-D40 Juniper Junos OS versions 13.3 prior to 13.3R7 Juniper Junos OS versions 14.1 prior to 14.1R5 Juniper Junos OS versions 14.1X53 prior to 14.1X53-D18 or 14.1X53-D30 Juniper Junos OS versions 14.1X55 prior to 14.1X55-D25 Juniper Junos OS versions 14.2 prior to 14.2R4 Juniper Junos OS versions 15.1 prior to 15.1R2 Juniper Junos OS versions 15.1X49 prior to 15.1X49-D10
Description The issue allows remote attackers to cause a denial of service via a malformed IGMPv3 packet. This can be described as a "multicast denial of service."
Recommendations For Juniper Junos OS versions prior to 12.1X44-D55, update to version 12.1X44-D55 or later. For Juniper Junos OS versions 12.1X46 prior to 12.1X46-D40, update to version 12.1X46-D40 or later. For Juniper Junos OS versions 12.1X47 prior to 12.1X47-D25, update to version 12.1X47-D25 or later. For Juniper Junos OS versions 12.3 prior to 12.3R10, update to version 12.3R10 or later. For Juniper Junos OS versions 12.3X48 prior to 12.3X48-D20, update to version 12.3X48-D20 or later. For Juniper Junos OS versions 13.2 prior to 13.2R8, update to version 13.2R8 or later. For Juniper Junos OS versions 13.2X51 prior to 13.2X51-D40, update to version 13.2X51-D40 or later. For Juniper Junos OS versions 13.3 prior to 13.3R7, update to version 13.3R7 or later. For Juniper Junos OS versions 14.1 prior to 14.1R5, update to version 14.1R5 or later. For Juniper Junos OS versions 14.1X53 prior to 14.1X53-D18 or 14.1X53-D30, update to version 14.1X53-D18, 14.1X53-D30, or later. For Juniper Junos OS versions 14.1X55 prior to 14.1X55-D25, update to version 14.1X55-D25 or later. For Juniper Junos OS versions 14.2 prior to 14.2R4, update to version 14.2R4 or later. For Juniper Junos OS versions 15.1 prior to 15.1R2, update to version 15.1R2 or later. For Juniper Junos OS versions 15.1X49 prior to 15.1X49-D10, update to version 15.1X49-D10 or later.

Fix

DoS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-1256

Affected Products

Junos