PT-2018-8567 · Juniper Networks · Junos
Published
2018-04-11
·
Updated
2019-10-09
·
CVE-2018-0017
CVSS v3.1
7.5
High
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions:
Junos OS versions prior to 12.1X46-D72
Junos OS versions prior to 12.3X48-D55
Junos OS versions prior to 15.1X49-D90
Description:
A vulnerability in the Network Address Translation - Protocol Translation (NAT-PT) feature of Junos OS on SRX series devices may allow a certain valid IPv6 packet to crash the flowd daemon. Repeated crashes of the flowd daemon can result in an extended denial of service condition for the SRX device.
Recommendations:
For versions prior to 12.1X46-D72, update to 12.1X46-D72 or later.
For versions prior to 12.3X48-D55, update to 12.3X48-D55 or later.
For versions prior to 15.1X49-D90, update to 15.1X49-D90 or later.
Fix
DoS
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Junos