CVE-2017-10614

MEDIUM

Junos OS Multiple Versions - Denial of Service via Telnetd Memory/CPU Consumption

Title source: llm
STIX 2.1

Description

A vulnerability in telnetd service on Junos OS allows a remote attacker to cause a limited memory and/or CPU consumption denial of service attack. This issue was found during internal product security testing. Affected releases are Juniper Networks Junos OS 12.1X46 prior to 12.1X46-D45; 12.3X48 prior to 12.3X48-D30; 14.1 prior to 14.1R4-S9, 14.1R8; 14.2 prior to 14.2R6; 15.1 prior to 15.1F5, 15.1R3; 15.1X49 prior to 15.1X49-D40; 15.1X53 prior to 15.1X53-D232, 15.1X53-D47.

References (1)

Core 1
Core References
Mitigation, Vendor Advisory x_refsource_confirm
https://kb.juniper.net/JSA10817

Scores

CVSS v3 5.3
EPSS 0.0036
EPSS Percentile 57.9%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Details

CWE
CWE-400
Status published
Products (9)
juniper/junos 12.1x46 (8 CPE variants)
juniper/junos 12.3x48 d10 (3 CPE variants)
juniper/junos 14.1 (6 CPE variants)
juniper/junos 14.2 r1 (5 CPE variants)
juniper/junos 15.1 f1 (9 CPE variants)
juniper/junos 15.1x49 d10 (4 CPE variants)
juniper/junos 15.1x53 d20 (13 CPE variants)
Juniper Networks/Junos OS 12.1X46 prior to 12.1X46-D45
Juniper Networks/Junos OS 12.3X48 prior to 12.3X48-D30
Published Oct 13, 2017
Tracked Since Feb 18, 2026