#VU17000 Infinite loop in Juniper Junos OS - CVE-2019-0001
Published: January 9, 2019 / Updated: January 18, 2019
Juniper Junos OS
Juniper Networks, Inc.
Description
The vulnerability allows a remote attacker to cause DoS condition on the target system.
The vulnerability exists due to an uncontrolled recursion loop in the Broadband Edge subscriber management daemon (bbe-smgd) when receipt of a malformed packet on MX Series devices with dynamic vlan configuration. A remote attacker can send trigger high CPU usage and a crash of the bbe-smgd service.