CVE-2019-0067

Receipt of a specific link-local IPv6 packet destined to the RE may cause the system to crash and restart (vmcore). By continuously sending a specially crafted IPv6 packet, an attacker can repeatedly crash the system causing a prolonged Denial of Service (DoS). This issue affects Juniper Networks Junos OS: 16.1 versions prior to 16.1R6-S2, 16.1R7; 16.2 versions prior to 16.2R2-S10; 17.1 versions prior to 17.1R3. This issue does not affect Juniper Networks Junos OS version 15.1 and prior versions.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.5 MEDIUM
ADJACENT_NETWORK
LOW
NONE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
juniperCNA
6.5 MEDIUM
ADJACENT_NETWORK
LOW
NONE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 23%
VendorProductVersion
juniperjunos
16.1
juniperjunos
16.1:r1
juniperjunos
16.1:r2
juniperjunos
16.1:r3
juniperjunos
16.1:r3-s10
juniperjunos
16.1:r3-s11
juniperjunos
16.1:r4
juniperjunos
16.1:r5-s4
juniperjunos
16.1:r6-s1
juniperjunos
16.2
juniperjunos
16.2:r1
juniperjunos
16.2:r2
juniperjunos
16.2:r2-s1
juniperjunos
16.2:r2-s2
juniperjunos
16.2:r2-s5
juniperjunos
16.2:r2-s6
juniperjunos
16.2:r2-s7
juniperjunos
16.2:r2-s8
juniperjunos
16.2:r2-s9
juniperjunos
17.1
juniperjunos
17.1:r1
juniperjunos
17.1:r2-s1
juniperjunos
17.1:r2-s10
juniperjunos
17.1:r2-s2
juniperjunos
17.1:r2-s3
juniperjunos
17.1:r2-s4
juniperjunos
17.1:r2-s5
juniperjunos
17.1:r2-s6
juniperjunos
17.1:r2-s7
𝑥
= Vulnerable software versions