← Back

CVE-2019-0006

nvd nist
Published: Jan 15, 2019Modified: Nov 21, 2024

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

A certain crafted HTTP packet can trigger an uninitialized function pointer deference vulnerability in the Packet Forwarding Engine manager (fxpc) on all EX, QFX and MX Series devices in a Virtual Chassis configuration. This issue can result in a crash of the fxpc daemon or may potentially lead to remote code execution. This issue only occurs when the crafted packet it destined to the device. Affected releases are Juniper Networks Junos OS: 14.1X53 versions prior to 14.1X53-D47 on EX and QFX Virtual Chassis Platforms; 15.1 versions prior to 15.1R7-S3 all Virtual Chassis Platforms 15.1X53 versions prior to 15.1X53-D50 on EX and QFX Virtual Chassis Platforms.

Affected (26)

Products: Juniper: Junos
1 product
Junos
Configuration A
13 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 14.1x53
Version 14.1x53 d10
Version 14.1x53 d15
Version 14.1x53 d16
Version 14.1x53 d25
Version 14.1x53 d26
Version 14.1x53 d27
Version 14.1x53 d30
Version 14.1x53 d35
Version 14.1x53 d40
Version 14.1x53 d45
Version 14.1x53 d46
Version 14.1x53 r1
Configuration B
6 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 15.1 r1
Version 15.1 r2
Version 15.1 r3
Version 15.1 r4
Version 15.1 r5
Version 15.1 r6
Configuration C
7 vulnerable · 30 platform
Vulnerable SoftwareAffected Versions
Juniper
Version 15.1x53 d20
Version 15.1x53 d21
Version 15.1x53 d30
Version 15.1x53 d32
Version 15.1x53 d33
Version 15.1x53 d34
Version 15.1x53 d50
Running on/withPlatform Versions
Juniper
Ex2200
All versions
Juniper
Ex2200 C
All versions
Juniper
Ex2300
All versions
Juniper
Ex2300 C
All versions
Juniper
Ex3300
All versions
Juniper
Ex3400
All versions
Juniper
Ex4200
All versions
Juniper
Ex4300
All versions
Juniper
Ex4500
All versions
Juniper
Ex4550
All versions
Juniper
Ex4600
All versions
Juniper
Ex4650
All versions
Juniper
Ex6210
All versions
Juniper
Ex8208
All versions
Juniper
Ex8216
All versions
Juniper
Ex9204
All versions
Juniper
Ex9208
All versions
Juniper
Ex9214
All versions
Juniper
Ex9251
All versions
Juniper
Ex9253
All versions
Juniper
Qfx10002
All versions
Juniper
Qfx10008
All versions
Juniper
Qfx10016
All versions
Juniper
Qfx3500
All versions
Juniper
Qfx3600
All versions
Juniper
Qfx5100
All versions
Juniper
Qfx5110
All versions
Juniper
Qfx5120
All versions
Juniper
Qfx5200
All versions
Juniper
Qfx5210
All versions

References (4)

Source: sirt@juniper.net
Third Party AdvisoryVDB Entry
Source: sirt@juniper.net
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.