7.1

CVE-2021-0299

Junos OS: Kernel crash (vmcore) upon receipt of a malformed IPv6 packet

An Improper Handling of Exceptional Conditions vulnerability in the processing of a transit or directly received malformed IPv6 packet in Juniper Networks Junos OS results in a kernel crash, causing the device to restart, leading to a Denial of Service (DoS). Continued receipt and processing of this packet will create a sustained Denial of Service (DoS) condition. This issue only affects systems with IPv6 configured. Devices with only IPv4 configured are not vulnerable to this issue. This issue affects Juniper Networks Junos OS: 19.4 versions prior to 19.4R3; 20.1 versions prior to 20.1R2; 20.2 versions prior to 20.2R1-S1, 20.2R2. This issue does not affect Juniper Networks Junos OS versions prior to 19.4R1.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Juniper ≫ Junos Version 19.4 Update -
Juniper ≫ Junos Version 19.4 Update r1
Juniper ≫ Junos Version 19.4 Update r1-s1
Juniper ≫ Junos Version 19.4 Update r1-s2
Juniper ≫ Junos Version 19.4 Update r1-s3
Juniper ≫ Junos Version 19.4 Update r1-s4
Juniper ≫ Junos Version 19.4 Update r2
Juniper ≫ Junos Version 19.4 Update r2-s1
Juniper ≫ Junos Version 19.4 Update r2-s2
Juniper ≫ Junos Version 19.4 Update r2-s3
Juniper ≫ Junos Version 19.4 Update r2-s4
Juniper ≫ Junos Version 19.4 Update r2-s5
Juniper ≫ Junos Version 20.1 Update r1
Juniper ≫ Junos Version 20.1 Update r1-s1
Juniper ≫ Junos Version 20.1 Update r1-s2
Juniper ≫ Junos Version 20.1 Update r1-s3
Juniper ≫ Junos Version 20.1 Update r1-s4
Juniper ≫ Junos Version 20.2 Update r1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.01% 0.599
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.1 8.6 6.9
AV:N/AC:M/Au:N/C:N/I:N/A:C
Juniper 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-755 Improper Handling of Exceptional Conditions

The product does not handle or incorrectly handles an exceptional condition.