Insufficient Resource Pool in Juniper Networks, Inc. products - CVE-2019-0056
Published: October 10, 2019
Juniper Junos OS
MX480
MX960
MX2008
MX2010
MX2020
Detailed vulnerability description
The vulnerability allows a remote attacker to cause a denial of service (DoS) condition.
The vulnerability exists due to the device's resource pool is not large enough to handle peak demand. A remote attacker can cause the device's Open Shortest Path First (OSPF) states to transition to Down and perform a denial of service attack.
Note: This issue only affects devices with three (3) or more MPC10's installed in a single chassis with OSPF enabled and configured on the device.