PT-2016-4678 · Juniper Networks · Junos
Published
2016-09-09
·
Updated
2017-09-01
·
CVE-2016-1263
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Juniper Junos OS versions prior to 12.1X46-D45
Juniper Junos OS versions prior to 12.1X47-D35
Juniper Junos OS versions prior to 12.3X48-D30
Juniper Junos OS versions prior to 13.3R9-S1
Juniper Junos OS versions prior to 14.1R7
Juniper Junos OS versions prior to 14.2R6
Juniper Junos OS versions prior to 15.1F2-S5
Juniper Junos OS versions prior to 15.1F4-S2
Juniper Junos OS versions prior to 15.1R2-S3
Juniper Junos OS versions prior to 15.1R3
Juniper Junos OS versions prior to 15.1X49-D40
Description
The issue allows remote attackers to cause a denial of service, resulting in a kernel crash, via a crafted UDP packet destined to the interface IP address of a 64-bit OS device.
Recommendations
For versions prior to 12.1X46-D45, update to 12.1X46-D45 or later.
For versions prior to 12.1X47-D35, update to 12.1X47-D35 or later.
For versions prior to 12.3X48-D30, update to 12.3X48-D30 or later.
For versions prior to 13.3R9-S1, update to 13.3R9-S1 or later.
For versions prior to 14.1R7, update to 14.1R7 or later.
For versions prior to 14.2R6, update to 14.2R6 or later.
For versions prior to 15.1F2-S5, update to 15.1F2-S5 or later.
For versions prior to 15.1F4-S2, update to 15.1F4-S2 or later.
For versions prior to 15.1R2-S3, update to 15.1R2-S3 or later.
For versions prior to 15.1R3, update to 15.1R3 or later.
For versions prior to 15.1X49-D40, update to 15.1X49-D40 or later.
Fix
DoS
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Junos