PT-2020-4095 · Juniper Networks · Srx Series+1

Published

2020-04-08

·

Updated

2021-11-22

·

CVE-2020-1634

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions: Juniper Networks Junos OS versions 12.3X48-D80 through 12.3X48-D95 on High-End SRX Series
Description: The issue affects High-End SRX Series devices, in specific configurations, and when specific networking events or operator actions occur, an SPC receiving genuine multicast traffic may core, causing all FPCs in a chassis to reset and resulting in a Denial of Service. This issue affects both IPv4 and IPv6. The problem is due to insufficient input validation.
Recommendations: For Juniper Networks Junos OS versions 12.3X48-D80 through 12.3X48-D95 on High-End SRX Series, update to version 12.3X48-D95 or later to resolve the issue. As a temporary workaround, consider restricting the reception of genuine multicast traffic to minimize the risk of exploitation.

Fix

DoS

Integer Overflow

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-04495
CVE-2020-1634

Affected Products

Junos
Srx Series