Lucene search

K
cvelistJuniperCVELIST:CVE-2021-0226
HistoryApr 22, 2021 - 7:36 p.m.

CVE-2021-0226 Junos OS Evolved: The IPv6 BGP session will flap due to receipt of a specific IPv6 packet

2021-04-2219:36:56
CWE-665
juniper
www.cve.org
3
juniper networks
denial of service
bgp

CVSS3

7.1

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H

EPSS

0.001

Percentile

42.5%

On Juniper Networks Junos OS Evolved devices, receipt of a specific IPv6 packet may cause an established IPv6 BGP session to terminate, creating a Denial of Service (DoS) condition. Continued receipt and processing of this packet will create a sustained Denial of Service (DoS) condition. This issue does not affect IPv4 BGP sessions. This issue affects IBGP or EBGP peer sessions with IPv6. This issue affects: Juniper Networks Junos OS Evolved: 19.4 versions prior to 19.4R2-S3-EVO; 20.1 versions prior to 20.1R2-S3-EVO; 20.2 versions prior to 20.2R2-S1-EVO; 20.3 versions prior to 20.3R2-EVO. This issue does not affect Juniper Networks Junos OS releases.

CNA Affected

[
  {
    "product": "Junos OS Evolved",
    "vendor": "Juniper Networks",
    "versions": [
      {
        "lessThan": "19.4R2-S3-EVO",
        "status": "affected",
        "version": "19.4-EVO",
        "versionType": "custom"
      },
      {
        "lessThan": "20.1R2-S3-EVO",
        "status": "affected",
        "version": "20.1-EVO",
        "versionType": "custom"
      },
      {
        "lessThan": "20.2R2-S1-EVO",
        "status": "affected",
        "version": "20.2-EVO",
        "versionType": "custom"
      },
      {
        "lessThan": "20.3R2-EVO",
        "status": "affected",
        "version": "20.3-EVO",
        "versionType": "custom"
      }
    ]
  }
]

CVSS3

7.1

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H

EPSS

0.001

Percentile

42.5%

Related for CVELIST:CVE-2021-0226