CVE Database
/

CVE-2017-2315

Back to search

CVE-2017-2315

Published: Apr 24, 2017

Modified: Aug 5, 2024

PUBLISHED

Description

On Juniper Networks EX Series Ethernet Switches running affected Junos OS versions, a vulnerability in IPv6 processing has been discovered that may allow a specially crafted IPv6 Neighbor Discovery (ND) packet destined to an EX Series Ethernet Switch to cause a slow memory leak. A malicious network-based packet flood of these crafted IPv6 NDP packets may eventually lead to resource exhaustion and a denial of service. The affected Junos OS versions are: 12.3 prior to 12.3R12-S4, 12.3R13; 13.3 prior to 13.3R10; 14.1 prior to 14.1R8-S3, 14.1R9; 14.1X53 prior ro 14.1X53-D12, 14.1X53-D40; 14.1X55 prior to 14.1X55-D35; 14.2 prior to 14.2R6-S4, 14.2R7-S6, 14.2R8; 15.1 prior to 15.1R5; 16.1 before 16.1R3; 16.2 before 16.2R1-S3, 16.2R2. 17.1R1 and all subsequent releases have a resolution for this vulnerability.

VendorProductVersions

Juniper Networks

Junos OS on EX series Ethernet Switches with IPv6 enabled

affected
12.3 prior to 12.3R12-S4, 12.3R13
affected
13.3 prior to 13.3R10
affected
14.1 prior to 14.1R8-S3, 14.1R9
affected
14.1X53 prior ro 14.1X53-D12, 14.1X53-D40
affected
14.1X55 prior to 14.1X55-D35

+5 more versions

References

1038253
vdb-entry
x_refsource_SECTRACK
97615
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now