CVE-2019-0006
- EPSS 5.92%
- Veröffentlicht 15.01.2019 21:29:01
- Zuletzt bearbeitet 21.11.2024 04:16:01
A certain crafted HTTP packet can trigger an uninitialized function pointer deference vulnerability in the Packet Forwarding Engine manager (fxpc) on all EX, QFX and MX Series devices in a Virtual Chassis configuration. This issue can result in a cra...
- EPSS 0.5%
- Veröffentlicht 15.01.2019 21:29:01
- Zuletzt bearbeitet 21.11.2024 04:16:02
The vMX Series software uses a predictable IP ID Sequence Number. This leaves the system as well as clients connecting through the device susceptible to a family of attacks which rely on the use of predictable IP ID sequence numbers as their base met...
CVE-2019-0009
- EPSS 0.05%
- Veröffentlicht 15.01.2019 21:29:01
- Zuletzt bearbeitet 21.11.2024 04:16:02
On EX2300 and EX3400 series, high disk I/O operations may disrupt the communication between the routing engine (RE) and the packet forwarding engine (PFE). In a virtual chassis (VC) deployment, this issue disrupts communication between the VC members...
CVE-2019-0010
- EPSS 1.11%
- Veröffentlicht 15.01.2019 21:29:01
- Zuletzt bearbeitet 21.11.2024 04:16:02
An SRX Series Service Gateway configured for Unified Threat Management (UTM) may experience a system crash with the error message "mbuf exceed" -- an indication of memory buffer exhaustion -- due to the receipt of crafted HTTP traffic. Each crafted H...
CVE-2019-0011
- EPSS 0.12%
- Veröffentlicht 15.01.2019 21:29:01
- Zuletzt bearbeitet 21.11.2024 04:16:02
The Junos OS kernel crashes after processing a specific incoming packet to the out of band management interface (such as fxp0, me0, em0, vme0) destined for another address. By continuously sending this type of packet, an attacker can repeatedly crash...
CVE-2019-0012
- EPSS 0.41%
- Veröffentlicht 15.01.2019 21:29:01
- Zuletzt bearbeitet 21.11.2024 04:16:02
A Denial of Service (DoS) vulnerability in BGP in Juniper Networks Junos OS configured as a VPLS PE allows an attacker to craft a specific BGP message to cause the routing protocol daemon (rpd) process to crash and restart. While rpd restarts after a...
CVE-2019-0013
- EPSS 0.31%
- Veröffentlicht 15.01.2019 21:29:01
- Zuletzt bearbeitet 21.11.2024 04:16:02
The routing protocol daemon (RPD) process will crash and restart when a specific invalid IPv4 PIM Join packet is received. While RPD restarts after a crash, repeated crashes can result in an extended Denial of Service (DoS) condition. This issue only...
CVE-2019-0014
- EPSS 0.48%
- Veröffentlicht 15.01.2019 21:29:01
- Zuletzt bearbeitet 21.11.2024 04:16:03
On QFX and PTX Series, receipt of a malformed packet for J-Flow sampling might crash the FPC (Flexible PIC Concentrator) process which causes all interfaces to go down. By continuously sending the offending packet, an attacker can repeatedly crash th...
CVE-2019-0015
- EPSS 0.19%
- Veröffentlicht 15.01.2019 21:29:01
- Zuletzt bearbeitet 21.11.2024 04:16:03
A vulnerability in the SRX Series Service Gateway allows deleted dynamic VPN users to establish dynamic VPN connections until the device is rebooted. A deleted dynamic VPN connection should be immediately disallowed from establishing new VPN connecti...
CVE-2019-0001
- EPSS 0.66%
- Veröffentlicht 15.01.2019 21:29:00
- Zuletzt bearbeitet 21.11.2024 04:16:01
Receipt of a malformed packet on MX Series devices with dynamic vlan configuration can trigger an uncontrolled recursion loop in the Broadband Edge subscriber management daemon (bbe-smgd), and lead to high CPU usage and a crash of the bbe-smgd servic...