Juniper Junos ICMPv6 DoS (PSN-2012-07-644)

medium Nessus Plugin ID 59988

Synopsis

The remote router has a denial of service vulnerability.

Description

According to its self-reported version number, the remote Junos router has a denial of service vulnerability. Receiving an ICMPv6 packet with a corrupted payload within an IPv6 L3VPN can result in a kernel panic. Only VPNv6 configurations without the 'vrf-table-label' statement in the routing instance configuration are affected. A remote, unauthenticated attacker could exploit this to crash the router.

Solution

Apply the relevant Junos upgrade referenced in Juniper advisory PSN-2012-07-644.

See Also

http://www.nessus.org/u?351cdb3d

Plugin Details

Severity: Medium

ID: 59988

File Name: juniper_psn-2012-07-644.nasl

Version: 1.8

Type: combined

Published: 7/17/2012

Updated: 8/8/2018

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Medium

Base Score: 5.4

Temporal Score: 4

Vector: CVSS2#AV:N/AC:H/Au:N/C:N/I:N/A:C

Vulnerability Information

CPE: cpe:/o:juniper:junos

Required KB Items: Host/Juniper/model, Host/Juniper/JUNOS/Version

Patch Publication Date: 7/10/2012

Vulnerability Publication Date: 7/10/2012