Versio.io

CVE-2019-0011

Common vulnerabilities & exposures (CVE)

CVE databaseCVE database blogpostRelease & EoL database
 
Published at: - 15-01-2019 10:29
Last modified: - 29-04-2022 04:24
Total changes: - 4

Description

The Junos OS kernel crashes after processing a specific incoming packet to the out of band management interface (such as fxp0, me0, em0, vme0) destined for another address. By continuously sending this type of packet, an attacker can repeatedly crash the kernel causing a sustained Denial of Service. Affected releases are Juniper Networks Junos OS: 17.2 versions prior to 17.2R1-S7, 17.2R3; 17.3 versions prior to 17.3R3-S3; 17.4 versions prior to 17.4R1-S4, 17.4R2; 17.2X75 versions prior to 17.2X75-D110; 18.1 versions prior to 18.1R2.

Common Vulnerability Scoring System (CVSS)

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Low
Attack complexity
Adjacent
Attack vector
High
Availability
None
Confidentiality
None
Integrity
None
Privileges required
Unchanged
Scope
None
User interaction
6.5
Base score
2.8
3.6
Exploitability score
Impact score
 

Verification logic

OR
OR
vendor=juniper AND product=junos AND version=17.2 AND update=-
vendor=juniper AND product=junos AND version=17.2 AND update=r1
vendor=juniper AND product=junos AND version=17.2 AND update=r1-s1
vendor=juniper AND product=junos AND version=17.2 AND update=r1-s2
vendor=juniper AND product=junos AND version=17.2 AND update=r1-s4
vendor=juniper AND product=junos AND version=17.2 AND update=r1-s6
vendor=juniper AND product=junos AND version=17.2 AND update=r1-s3
vendor=juniper AND product=junos AND version=17.2 AND update=r1-s5
OR
vendor=juniper AND product=junos AND version=17.3 AND update=r3
vendor=juniper AND product=junos AND version=17.3 AND update=r3-s2
vendor=juniper AND product=junos AND version=17.3 AND update=-
vendor=juniper AND product=junos AND version=17.3 AND update=r1
vendor=juniper AND product=junos AND version=17.3 AND update=r2
vendor=juniper AND product=junos AND version=17.3 AND update=r3-s1
OR
vendor=juniper AND product=junos AND version=17.4 AND update=-
vendor=juniper AND product=junos AND version=17.4 AND update=r1
vendor=juniper AND product=junos AND version=17.4 AND update=r1-s1
vendor=juniper AND product=junos AND version=17.4 AND update=r1-s2
vendor=juniper AND product=junos AND version=17.4 AND update=r1-s3
OR
vendor=juniper AND product=junos AND version=17.2x75 AND update=d100
vendor=juniper AND product=junos AND version=17.2x75 AND update=d102
vendor=juniper AND product=junos AND version=17.2x75 AND update=d50
vendor=juniper AND product=junos AND version=17.2x75 AND update=d70
vendor=juniper AND product=junos AND version=17.2x75 AND update=d90
vendor=juniper AND product=junos AND version=17.2x75 AND update=d92
vendor=juniper AND product=junos AND version=17.2x75 AND update=-
OR
vendor=juniper AND product=junos AND version=18.1 AND update=-
 

Reference

 


Keywords

NVD

 

CVE-2019-0011

 

CVE

 

Common vulnerabilities & exposures

 

CVSS

 

Common vulnerability scoring system

 

Security

 

Vulnerabilities

 

Exposures

 

We use cookies to ensure that we give you the best experience on our website. Read privacy policies for more information.