← Back

CVE-2019-0065

nvd nist
Published: Oct 9, 2019Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

On MX Series, when the SIP ALG is enabled, receipt of a certain malformed SIP packet may crash the MS-PIC component on MS-MIC or MS-MPC. By continuously sending a crafted SIP packet, an attacker can repeatedly bring down MS-PIC on MS-MIC/MS-MPC causing a sustained Denial of Service. This issue affects Juniper Networks Junos OS on MX Series: 16.1 versions prior to 16.1R7-S5; 16.2 versions prior to 16.2R2-S11; 17.1 versions prior to 17.1R3; 17.2 versions prior to 17.2R3-S3; 17.3 versions prior to 17.3R3-S6 ; 17.4 versions prior to 17.4R2-S8, 17.4R3; 18.1 versions prior to 18.1R3-S3; 18.2 versions prior to 18.2R3; 18.3 versions prior to 18.3R2; 18.4 versions prior to 18.4R2.

Affected (89)

Products: Juniper: Junos
1 product
Junos
Configuration A
15 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 16.1
Version 16.1 r1
Version 16.1 r2
Version 16.1 r3-s10
Version 16.1 r3-s11
Version 16.1 r3
Version 16.1 r4
Version 16.1 r5-s4
Version 16.1 r5
Version 16.1 r6-s1
Version 16.1 r6-s6
Version 16.1 r6
Version 16.1 r7-s3
Version 16.1 r7-s4
Version 16.1 r7
Configuration B
11 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 16.2
Version 16.2 r1
Version 16.2 r2-s10
Version 16.2 r2-s1
Version 16.2 r2-s2
Version 16.2 r2-s5
Version 16.2 r2-s6
Version 16.2 r2-s7
Version 16.2 r2-s8
Version 16.2 r2-s9
Version 16.2 r2
Configuration C
10 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 17.1
Version 17.1 r1
Version 17.1 r2-s10
Version 17.1 r2-s1
Version 17.1 r2-s2
Version 17.1 r2-s3
Version 17.1 r2-s4
Version 17.1 r2-s5
Version 17.1 r2-s6
Version 17.1 r2-s7
Configuration D
9 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 17.2
Version 17.2 r1-s2
Version 17.2 r1-s4
Version 17.2 r1-s7
Version 17.2 r1-s8
Version 17.2 r2-s6
Version 17.2 r2-s7
Version 17.2 r3-s1
Version 17.2 r3-s2
Configuration E
9 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 17.3
Version 17.3 r2-s1
Version 17.3 r2-s2
Version 17.3 r2
Version 17.3 r3-s1
Version 17.3 r3-s2
Version 17.3 r3-s3
Version 17.3 r3-s4
Version 17.3 r3-s5
Configuration F
14 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 17.4
Version 17.4 r1-s1
Version 17.4 r1-s2
Version 17.4 r1-s4
Version 17.4 r1-s6
Version 17.4 r1-s7
Version 17.4 r1
Version 17.4 r2-s1
Version 17.4 r2-s3
Version 17.4 r2-s4
Version 17.4 r2-s5
Version 17.4 r2-s6
Version 17.4 r2-s7
Version 17.4 r2
Configuration G
7 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 18.1
Version 18.1 r2-s1
Version 18.1 r2-s2
Version 18.1 r2-s4
Version 18.1 r2
Version 18.1 r3-s2
Version 18.1 r3
Configuration H
6 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 18.2
Version 18.2 r1-s5
Version 18.2 r2-s1
Version 18.2 r2-s2
Version 18.2 r2-s3
Version 18.2 r2-s4
Configuration I
5 vulnerable
Vulnerable SoftwareAffected Versions
Juniper
Version 18.3
Version 18.3 r1-s1
Version 18.3 r1-s2
Version 18.3 r1-s3
Version 18.3 r1
Configuration J
3 vulnerable · 17 platform
Vulnerable SoftwareAffected Versions
Juniper
Version 18.4
Version 18.4 r1-s2
Version 18.4 r1
Running on/withPlatform Versions
Juniper
Mx10
All versions
Juniper
Mx10003
All versions
Juniper
Mx10008
All versions
Juniper
Mx10016
All versions
Juniper
Mx104
All versions
Juniper
Mx150
All versions
Juniper
Mx2008
All versions
Juniper
Mx2010
All versions
Juniper
Mx2020
All versions
Juniper
Mx204
All versions
Juniper
Mx240
All versions
Juniper
Mx40
All versions
Juniper
Mx480
All versions
Juniper
Mx5
All versions
Juniper
Mx80
All versions
Juniper
Mx960
All versions
Juniper
Vmx
All versions

References (2)

Source: sirt@juniper.net
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.