7.1
CVSSv2

CVE-2014-0616

Published: 15/01/2014 Updated: 24/01/2014
CVSS v2 Base Score: 7.1 | Impact Score: 6.9 | Exploitability Score: 8.6
VMScore: 632
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C

Vulnerability Summary

Juniper Junos 10.4 prior to 10.4R16, 11.4 prior to 11.4R10, 12.1R prior to 12.1R8-S2, 12.1X44 prior to 12.1X44-D30, 12.1X45 prior to 12.1X45-D20, 12.1X46 prior to 12.1X46-D10, 12.2 prior to 12.2R7, 12.3 prior to 12.3R4-S2, 13.1 prior to 13.1R3-S1, 13.2 prior to 13.2R2, and 13.3 prior to 13.3R1 allows remote malicious users to cause a denial of service (rdp crash) via a large BGP UPDATE message which immediately triggers a withdraw message to be sent, as demonstrated by a long AS_PATH and a large number of BGP Communities.

Vulnerable Product Search on Vulmon Subscribe to Product

juniper junos 12.1x45

juniper junos 12.1r

juniper junos 10.4

juniper junos 11.4

juniper junos 13.3

juniper junos 13.2

juniper junos 13.1

juniper junos 12.3

juniper junos 12.1x46

juniper junos 12.2

juniper junos 12.1x44