7.5
CVSSv3

CVE-2018-0058

Published: 10/10/2018 Updated: 09/10/2019
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

Receipt of a specially crafted IPv6 exception packet may be able to trigger a kernel crash (vmcore), causing the device to reboot. The issue is specific to the processing of Broadband Edge (BBE) client route processing on MX Series subscriber management platforms, introduced by the Tomcat (Next Generation Subscriber Management) functionality in Junos OS 15.1. This issue affects no other platforms or configurations. Affected releases are Juniper Networks Junos OS: 15.1 versions before 15.1R7-S2, 15.1R8 on MX Series; 16.1 versions before 16.1R4-S11, 16.1R7-S2, 16.1R8 on MX Series; 16.2 versions before 16.2R3 on MX Series; 17.1 versions before 17.1R2-S9, 17.1R3 on MX Series; 17.2 versions before 17.2R2-S6, 17.2R3 on MX Series; 17.3 versions before 17.3R2-S4, 17.3R3-S2, 17.3R4 on MX Series; 17.4 versions before 17.4R2 on MX Series; 18.1 versions before 18.1R2-S3, 18.1R3 on MX Series; 18.2 versions before 18.2R1-S1, 18.2R2 on MX Series.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

juniper junos 15.1

juniper junos 16.1

juniper junos 16.2

juniper junos 17.1

juniper junos 17.2

juniper junos 17.3

juniper junos 17.4

juniper junos 18.1

juniper junos 18.2