PT-2019-3483 · Juniper Networks · Junos
Published
2019-10-09
·
Updated
2021-09-14
·
CVE-2019-0059
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Juniper Networks Junos OS versions prior to 18.1R2-S4
Juniper Networks Junos OS version 18.1R3-S1
Juniper Networks Junos OS version 18.1X75
Description
A memory leak issue in Juniper Networks Junos OS allows an attacker to cause a Denial of Service (DoS) to the device. This can be achieved by sending specific commands from a peered BGP host, which are then delivered to the vulnerable device.
Recommendations
For versions prior to 18.1R2-S4, update to 18.1R2-S4 or later.
For version 18.1R3-S1, update to a version later than 18.1R3-S1.
For version 18.1X75, consider disabling BGP protocol temporarily until a patch is available.
As a temporary workaround, consider restricting access to the BGP protocol to minimize the risk of exploitation.
Fix
DoS
Memory Leak
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Junos