PT-2016-4678 · Juniper Networks · Junos

Published

2016-09-09

·

Updated

2017-09-01

·

CVE-2016-1263

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Juniper Junos OS versions prior to 12.1X46-D45 Juniper Junos OS versions prior to 12.1X47-D35 Juniper Junos OS versions prior to 12.3X48-D30 Juniper Junos OS versions prior to 13.3R9-S1 Juniper Junos OS versions prior to 14.1R7 Juniper Junos OS versions prior to 14.2R6 Juniper Junos OS versions prior to 15.1F2-S5 Juniper Junos OS versions prior to 15.1F4-S2 Juniper Junos OS versions prior to 15.1R2-S3 Juniper Junos OS versions prior to 15.1R3 Juniper Junos OS versions prior to 15.1X49-D40
Description The issue allows remote attackers to cause a denial of service, resulting in a kernel crash, via a crafted UDP packet destined to the interface IP address of a 64-bit OS device.
Recommendations For versions prior to 12.1X46-D45, update to 12.1X46-D45 or later. For versions prior to 12.1X47-D35, update to 12.1X47-D35 or later. For versions prior to 12.3X48-D30, update to 12.3X48-D30 or later. For versions prior to 13.3R9-S1, update to 13.3R9-S1 or later. For versions prior to 14.1R7, update to 14.1R7 or later. For versions prior to 14.2R6, update to 14.2R6 or later. For versions prior to 15.1F2-S5, update to 15.1F2-S5 or later. For versions prior to 15.1F4-S2, update to 15.1F4-S2 or later. For versions prior to 15.1R2-S3, update to 15.1R2-S3 or later. For versions prior to 15.1R3, update to 15.1R3 or later. For versions prior to 15.1X49-D40, update to 15.1X49-D40 or later.

Fix

DoS

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-1263

Affected Products

Junos