CVE-2020-1647

CRITICAL

Juniper Junos OS on SRX Series Double Free via ICAP HTTP Message Processing

Title source: llm
STIX 2.1

Description

On Juniper Networks SRX Series with ICAP (Internet Content Adaptation Protocol) redirect service enabled, a double free vulnerability can lead to a Denial of Service (DoS) or Remote Code Execution (RCE) due to processing of a specific HTTP message. Continued processing of this specific HTTP message may result in an extended Denial of Service (DoS). The offending HTTP message that causes this issue may originate both from the HTTP server or the client. This issue affects Juniper Networks Junos OS on SRX Series: 18.1 versions prior to 18.1R3-S9; 18.2 versions prior to 18.2R3-S3; 18.3 versions prior to 18.3R2-S4, 18.3R3-S1; 18.4 versions prior to 18.4R2-S5, 18.4R3; 19.1 versions prior to 19.1R2; 19.2 versions prior to 19.2R1-S2, 19.2R2; 19.3 versions prior to 19.3R2. This issue does not affect Juniper Networks Junos OS prior to 18.1R1.

References (1)

Core 1
Core References
Vendor Advisory x_refsource_confirm
https://kb.juniper.net/JSA11034

Scores

CVSS v3 9.8
EPSS 0.0199
EPSS Percentile 83.9%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-415
Status published
Products (4)
juniper/junos 18.1 (14 CPE variants)
juniper/junos 18.2 (16 CPE variants)
juniper/junos 18.3 (12 CPE variants)
juniper/junos 18.4 (8 CPE variants)
Published Jul 17, 2020
Tracked Since Feb 18, 2026