Input validation error in Juniper Junos OS - CVE-2019-0060
Published: October 10, 2019
Juniper Junos OS
Detailed vulnerability description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to insufficient validation of user-supplied input in the flowd process when processing specific transit IP packets through an IPSec tunnel. A remote attacker can cause an extended Denial of Service (DoS) condition.
Note: This issue only occurs when IPSec tunnels are configured. Systems without IPSec tunnel configurations are not vulnerable to this issue.