CVE-2016-1257 Information
Feb 14, 2021
cve
Description
The Routing Engine in Juniper Junos OS 13.2R5 through 13.2R8 13.3R1 before 13.3R8 13.3R7 before 13.3R7-S3 14.1R1 before 14.1R6 14.1R3 before 14.1R3-S9 14.1R4 before 14.1R4-S7 14.1X51 before 14.1X51-D65 14.1X53 before 14.1X53-D12 14.1X53 before 14.1X53-D28 14.1X53 before 4.1X53-D35 14.2R1 before 14.2R5 14.2R3 before 14.2R3-S4 14.2R4 before 14.2R4-S1 15.1 before 15.1R3 15.1F2 before 15.1F2-S2 and 15.1X49 before 15.1X49-D40 when LDP is enabled allows remote attackers to cause a denial of service (RPD routing process crash) via a crafted LDP packet.
CVSS Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
Reference
http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10715 http://www.securitytracker.com/id/1035117
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
NONE
Availability Impact
NONE
Base Score
HIGH
Base Severity
5.9
Share on: