CVE-2017-2303

HIGH

Juniper Networks - Unspecified Vuln

Title source: llm
STIX 2.1

Description

On Juniper Networks products or platforms running Junos OS 12.1X46 prior to 12.1X46-D50, 12.1X47 prior to 12.1X47-D40, 12.3 prior to 12.3R13, 12.3X48 prior to 12.3X48-D30, 13.2X51 prior to 13.2X51-D40, 13.3 prior to 13.3R10, 14.1 prior to 14.1R8, 14.1X53 prior to 14.1X53-D35, 14.1X55 prior to 14.1X55-D35, 14.2 prior to 14.2R5, 15.1 prior to 15.1F6 or 15.1R3, 15.1X49 prior to 15.1X49-D30 or 15.1X49-D40, 15.1X53 prior to 15.1X53-D35, and where RIP is enabled, certain RIP advertisements received by the router may cause the RPD daemon to crash resulting in a denial of service condition.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/95408
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1037594
Vendor Advisory x_refsource_confirm
https://kb.juniper.net/JSA10772

Scores

CVSS v3 7.5
EPSS 0.0081
EPSS Percentile 74.4%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (6)
juniper/junos 12.1x46 (9 CPE variants)
juniper/junos 12.1x47 (7 CPE variants)
juniper/junos 12.3 (12 CPE variants)
juniper/junos 12.3x48 (4 CPE variants)
juniper/junos 13.2x51 (8 CPE variants)
juniper/junos 13.3 (10 CPE variants)
Published May 30, 2017
Tracked Since Feb 18, 2026