When a specific BGP flowspec configuration is enabled and upon receipt of a specific matching BGP packet meeting a specific term in the flowspec configuration, a reachable assertion failure occurs, causing the routing protocol daemon (rpd) process to crash with a core file being generated. Affected releases are Juniper Networks Junos OS: 12.1X46 versions prior to 12.1X46-D77 on SRX Series; 12.3 versions prior to 12.3R12-S10; 12.3X48 versions prior to 12.3X48-D70 on SRX Series; 14.1X53 versions prior to 14.1X53-D47 on EX2200/VC, EX3200, EX3300/VC, EX4200, EX4300, EX4550/VC, EX4600, EX6200, EX8200/VC (XRE), QFX3500, QFX3600, QFX5100; 15.1 versions prior to 15.1R3; 15.1F versions prior to 15.1F3; 15.1X49 versions prior to 15.1X49-D140 on SRX Series; 15.1X53 versions prior to 15.1X53-D59 on EX2300/EX3400.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/106544 | Third Party Advisory VDB Entry |
https://kb.juniper.net/JSA10902 | Vendor Advisory |
http://www.securityfocus.com/bid/106544 | Third Party Advisory VDB Entry |
https://kb.juniper.net/JSA10902 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
History
21 Nov 2024, 04:16
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.securityfocus.com/bid/106544 - Third Party Advisory, VDB Entry | |
References | () https://kb.juniper.net/JSA10902 - Vendor Advisory |
Information
Published : 2019-01-15 21:29
Updated : 2024-11-21 04:16
NVD link : CVE-2019-0003
Mitre link : CVE-2019-0003
CVE.ORG link : CVE-2019-0003
JSON object : View
Products Affected
juniper
- srx1400
- srx300
- ex2200\/vc
- srx3600
- srx210
- junos
- ex4300
- srx340
- qfx5100
- srx550
- srx4200
- srx3400
- ex2300
- ex6200
- ex3300\/vc
- ex4550\/vc
- srx5800
- srx345
- ex3200
- srx1500
- srx220
- srx650
- srx5600
- ex4200
- srx5400
- ex3400
- srx100
- qfx3500
- ex8200\/vc_\(xre\)
- srx110
- srx320
- srx240
- ex4600
- srx4100
- qfx3600
CWE
CWE-617
Reachable Assertion