CVE-2019-0009

MEDIUM

Junos OS <15.1X53-D590, <18.1R2-S2, <18.1R3, <18.2R2 - Info Disclosure

Title source: llm
STIX 2.1

Description

On EX2300 and EX3400 series, high disk I/O operations may disrupt the communication between the routing engine (RE) and the packet forwarding engine (PFE). In a virtual chassis (VC) deployment, this issue disrupts communication between the VC members. This issue does not affect other Junos platforms. Affected releases are Junos OS on EX2300 and EX3400 series: 15.1X53 versions prior to 15.1X53-D590; 18.1 versions prior to 18.1R2-S2, 18.1R3; 18.2 versions prior to 18.2R2.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_confirm
https://kb.juniper.net/JSA10909
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/106548

Scores

CVSS v3 5.5
EPSS 0.0005
EPSS Percentile 16.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

Details

Status published
Products (3)
juniper/junos 15.1x53 d50 (7 CPE variants)
juniper/junos 18.1 (2 CPE variants)
juniper/junos 18.2
Published Jan 15, 2019
Tracked Since Feb 18, 2026