Juniper Junos rpd Remote Denial of Service Vulnerability (CVE-2014-6386)
Release date:
Updated on:
Affected Systems:
Juniper Networks JUNOS
Description:
Bugtraq id: 72067
CVE (CAN) ID: CVE-2014-6386
JunosE is an operating system used in the e-series routers of Juniper.
When Juniper Junos processes malformed BGP FlowSpec prefixes, assertions (program crashes) can be triggered, resulting in rpd crash.
<* Source: vendor
Link: http://kb.juniper.net/InfoCenter/index? Page = content & id = jsa000070 & cat = SIRT_1 & actp = LIST
*>
Suggestion:
Vendor patch:
Juniper Networks
----------------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://kb.juniper.net/InfoCenter
Http://kb.juniper.net/InfoCenter/index? Page = content & id = jsa000070 & cat = SIRT_1 & actp = LIST
This article permanently updates the link address: