10

CVE-2018-0007

An unauthenticated network-based attacker able to send a maliciously crafted LLDP packet to the local segment, through a local segment broadcast, may be able to cause a Junos device to enter an improper boundary check condition allowing a memory corruption to occur, leading to a denial of service. Further crafted packets may be able to sustain the denial of service condition. Score: 6.5 MEDIUM (CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H) Further, if the attacker is authenticated on the target device receiving and processing the malicious LLDP packet, while receiving the crafted packets, the attacker may be able to perform command or arbitrary code injection over the target device thereby elevating their permissions and privileges, and taking control of the device. Score: 7.8 HIGH (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H) An unauthenticated network-based attacker able to send a maliciously crafted LLDP packet to one or more local segments, via LLDP proxy / tunneling agents or other LLDP through Layer 3 deployments, through one or more local segment broadcasts, may be able to cause multiple Junos devices to enter an improper boundary check condition allowing a memory corruption to occur, leading to multiple distributed Denials of Services. These Denials of Services attacks may have cascading Denials of Services to adjacent connected devices, impacts network devices, servers, workstations, etc. Further crafted packets may be able to sustain these Denials of Services conditions. Score 6.8 MEDIUM (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:C/C:N/I:N/A:H) Further, if the attacker is authenticated on one or more target devices receiving and processing these malicious LLDP packets, while receiving the crafted packets, the attacker may be able to perform command or arbitrary code injection over multiple target devices thereby elevating their permissions and privileges, and taking control multiple devices. Score: 7.8 HIGH (CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H) Affected releases are Juniper Networks Junos OS: 12.1X46 versions prior to 12.1X46-D71; 12.3 versions prior to 12.3R12-S7; 12.3X48 versions prior to 12.3X48-D55; 14.1 versions prior to 14.1R8-S5, 14.1R9; 14.1X53 versions prior to 14.1X53-D46, 14.1X53-D50, 14.1X53-D107; 14.2 versions prior to 14.2R7-S9, 14.2R8; 15.1 versions prior to 15.1F2-S17, 15.1F5-S8, 15.1F6-S8, 15.1R5-S7, 15.1R7; 15.1X49 versions prior to 15.1X49-D90; 15.1X53 versions prior to 15.1X53-D65; 16.1 versions prior to 16.1R4-S6, 16.1R5; 16.1X65 versions prior to 16.1X65-D45; 16.2 versions prior to 16.2R2; 17.1 versions prior to 17.1R2. No other Juniper Networks products or platforms are affected by this issue.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Juniper ≫ Junos Version 12.1x46
Juniper ≫ Junos Version 12.1x46 Update d10
Juniper ≫ Junos Version 12.1x46 Update d15
Juniper ≫ Junos Version 12.1x46 Update d20
Juniper ≫ Junos Version 12.1x46 Update d25
Juniper ≫ Junos Version 12.1x46 Update d30
Juniper ≫ Junos Version 12.1x46 Update d35
Juniper ≫ Junos Version 12.1x46 Update d40
Juniper ≫ Junos Version 12.1x46 Update d45
Juniper ≫ Junos Version 12.1x46 Update d50
Juniper ≫ Junos Version 12.1x46 Update d55
Juniper ≫ Junos Version 12.1x46 Update d60
Juniper ≫ Junos Version 12.1x46 Update d65
Juniper ≫ Junos Version 12.3
Juniper ≫ Junos Version 12.3 Update r1
Juniper ≫ Junos Version 12.3 Update r10
Juniper ≫ Junos Version 12.3 Update r11
Juniper ≫ Junos Version 12.3 Update r12
Juniper ≫ Junos Version 12.3 Update r2
Juniper ≫ Junos Version 12.3 Update r3
Juniper ≫ Junos Version 12.3 Update r4
Juniper ≫ Junos Version 12.3 Update r5
Juniper ≫ Junos Version 12.3 Update r6
Juniper ≫ Junos Version 12.3 Update r7
Juniper ≫ Junos Version 12.3 Update r8
Juniper ≫ Junos Version 12.3 Update r9
Juniper ≫ Junos Version 12.3x48 Update d10
Juniper ≫ Junos Version 12.3x48 Update d15
Juniper ≫ Junos Version 12.3x48 Update d20
Juniper ≫ Junos Version 12.3x48 Update d25
Juniper ≫ Junos Version 12.3x48 Update d30
Juniper ≫ Junos Version 12.3x48 Update d35
Juniper ≫ Junos Version 12.3x48 Update d40
Juniper ≫ Junos Version 12.3x48 Update d45
Juniper ≫ Junos Version 12.3x48 Update d50
Juniper ≫ Junos Version 14.1
Juniper ≫ Junos Version 14.1 Update r1
Juniper ≫ Junos Version 14.1 Update r2
Juniper ≫ Junos Version 14.1 Update r3
Juniper ≫ Junos Version 14.1 Update r4
Juniper ≫ Junos Version 14.1 Update r5
Juniper ≫ Junos Version 14.1 Update r6
Juniper ≫ Junos Version 14.1 Update r7
Juniper ≫ Junos Version 14.1 Update r8
Juniper ≫ Junos Version 14.1 Update r9
Juniper ≫ Junos Version 14.1x53
Juniper ≫ Junos Version 14.1x53 Update d10
Juniper ≫ Junos Version 14.1x53 Update d15
Juniper ≫ Junos Version 14.1x53 Update d16
Juniper ≫ Junos Version 14.1x53 Update d25
Juniper ≫ Junos Version 14.1x53 Update d26
Juniper ≫ Junos Version 14.1x53 Update d27
Juniper ≫ Junos Version 14.1x53 Update d30
Juniper ≫ Junos Version 14.1x53 Update d35
Juniper ≫ Junos Version 14.1x53 Update d40
Juniper ≫ Junos Version 14.1x53 Update d45
Juniper ≫ Junos Version 14.2 Update r1
Juniper ≫ Junos Version 14.2 Update r2
Juniper ≫ Junos Version 14.2 Update r3
Juniper ≫ Junos Version 14.2 Update r4
Juniper ≫ Junos Version 14.2 Update r5
Juniper ≫ Junos Version 14.2 Update r6
Juniper ≫ Junos Version 14.2 Update r7
Juniper ≫ Junos Version 15.1 Update f2
Juniper ≫ Junos Version 15.1 Update f5
Juniper ≫ Junos Version 15.1 Update f6
Juniper ≫ Junos Version 15.1 Update f7
Juniper ≫ Junos Version 15.1 Update r7
Juniper ≫ Junos Version 15.1x49 Update d10
Juniper ≫ Junos Version 15.1x49 Update d20
Juniper ≫ Junos Version 15.1x49 Update d30
Juniper ≫ Junos Version 15.1x49 Update d35
Juniper ≫ Junos Version 15.1x49 Update d40
Juniper ≫ Junos Version 15.1x49 Update d45
Juniper ≫ Junos Version 15.1x49 Update d50
Juniper ≫ Junos Version 15.1x49 Update d55
Juniper ≫ Junos Version 15.1x49 Update d60
Juniper ≫ Junos Version 15.1x49 Update d65
Juniper ≫ Junos Version 15.1x49 Update d70
Juniper ≫ Junos Version 15.1x49 Update d75
Juniper ≫ Junos Version 15.1x49 Update d80
Juniper ≫ Junos Version 15.1x53 Update d20
Juniper ≫ Junos Version 15.1x53 Update d21
Juniper ≫ Junos Version 15.1x53 Update d210
Juniper ≫ Junos Version 15.1x53 Update d25
Juniper ≫ Junos Version 15.1x53 Update d30
Juniper ≫ Junos Version 15.1x53 Update d32
Juniper ≫ Junos Version 15.1x53 Update d33
Juniper ≫ Junos Version 15.1x53 Update d34
Juniper ≫ Junos Version 15.1x53 Update d60
Juniper ≫ Junos Version 15.1x53 Update d61
Juniper ≫ Junos Version 15.1x53 Update d62
Juniper ≫ Junos Version 15.1x53 Update d63
Juniper ≫ Junos Version 16.1 Update r1
Juniper ≫ Junos Version 16.1 Update r2
Juniper ≫ Junos Version 16.1 Update r3
Juniper ≫ Junos Version 16.1 Update r4
Juniper ≫ Junos Version 16.1x65 Update d30
Juniper ≫ Junos Version 16.1x65 Update d35
Juniper ≫ Junos Version 16.1x65 Update d40
Juniper ≫ Junos Version 16.2 Update r1
Juniper ≫ Junos Version 17.1 Update r1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 2.22% 0.803
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 9.8 3.9 5.9
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
NIST 10 10 10
AV:N/AC:L/Au:N/C:C/I:C/A:C
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

CWE-77 Improper Neutralization of Special Elements used in a Command ('Command Injection')

The product constructs all or part of a command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended command when it is sent to a downstream component.

CWE-94 Improper Control of Generation of Code ('Code Injection')

The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

http://www.securitytracker.com/id/1040181
Third Party Advisory
VDB Entry
https://kb.juniper.net/JSA10830
Vendor Advisory
Mitigation