SB2020010335 - Denial of service in Junos OS



SB2020010335 - Denial of service in Junos OS

Published: January 3, 2020 Updated: October 26, 2023

Security Bulletin ID SB2020010335
Severity
Medium
Patch available
YES
Number of vulnerabilities 1
Exploitation vector Remote access
Highest impact Data manipulation

Breakdown by Severity

Medium 100%
  • Low
  • Medium
  • High
  • Critical

Description

This security bulletin contains information about 1 security vulnerability.


1) Improper input validation (CVE-ID: CVE-2020-1604)

The vulnerability allows a remote non-authenticated attacker to read and manipulate data.

Problem On EX4300, EX4600, QFX3500, and QFX5100 Series, a vulnerability in the IP firewall filter component may cause the firewall filter evaluation of certain packets to fail. This issue only affects firewall filter evaluation of certain packets destined to the device Routing Engine (RE).


Remediation

Install update from vendor's website.