Juniper Junos J-Web CPU Utilization DoS (PSN-2012-04-547)

medium Nessus Plugin ID 58876

Synopsis

The remote device has a denial of service vulnerability.

Description

According to its self-reported version number, the J-Web component of the remote Junos system has a denial of service vulnerability. A high rate of inbound HTTP connections over an extended period can result in high CPU utilization, even after the connections are terminated. A remote, unauthenticated attacker could exploit this to cause a denial of service.

Solution

Apply the relevant Junos upgrade referenced in Juniper advisory PSN-2012-04-547.

See Also

http://www.nessus.org/u?d0e1a31c

Plugin Details

Severity: Medium

ID: 58876

File Name: juniper_psn-2012-04-547.nasl

Version: 1.8

Type: combined

Published: 4/25/2012

Updated: 8/8/2018

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Medium

Base Score: 5

Temporal Score: 3.7

Vector: CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Information

CPE: cpe:/o:juniper:junos

Required KB Items: Host/Juniper/model, Host/Juniper/JUNOS/Version

Patch Publication Date: 4/11/2012

Vulnerability Publication Date: 4/11/2012