Lucene search

K
cve[email protected]CVE-2014-3817
HistoryJul 11, 2014 - 8:55 p.m.

CVE-2014-3817

2014-07-1120:55:02
CWE-20
web.nvd.nist.gov
24
cve-2014-3817
juniper
junos
denial of service
nat
ipv4
ipv6
security vulnerability

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

6.8 Medium

AI Score

Confidence

High

0.008 Low

EPSS

Percentile

81.4%

Juniper Junos 11.4 before 11.4R12, 12.1X44 before 12.1X44-D32, 12.1X45 before 12.1X45-D25, 12.1X46 before 12.1X46-D20, and 12.1X47 before 12.1X47-D10 on SRX Series devices, when NAT protocol translation from IPv4 to IPv6 is enabled, allows remote attackers to cause a denial of service (flowd hang or crash) via a crafted packet.

Affected configurations

NVD
Node
juniperjunosMatch11.4
OR
juniperjunosMatch12.1x44
OR
juniperjunosMatch12.1x45
OR
juniperjunosMatch12.1x46
OR
juniperjunosMatch12.1x47
AND
junipersrx100Match-
OR
junipersrx110Match-
OR
junipersrx1400Match-
OR
junipersrx210Match-
OR
junipersrx220Match-
OR
junipersrx240Match-
OR
junipersrx3400Match-
OR
junipersrx3600Match-
OR
junipersrx550Match-
OR
junipersrx5600Match-
OR
junipersrx5800Match-
OR
junipersrx650Match-

7.8 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:N/I:N/A:C

6.8 Medium

AI Score

Confidence

High

0.008 Low

EPSS

Percentile

81.4%

Related for CVE-2014-3817