Support Support Downloads Knowledge Base Juniper Support Portal Community

Knowledge Base

Search our Knowledge Base sites to find answers to your questions.

Ask All Knowledge Base Sites All Knowledge Base Sites JunosE Defect (KA)Knowledge BaseSecurity AdvisoriesTechnical BulletinsTechnotes Sign in to display secure content and recently viewed articles

CERT/CC Advisory CA-2002-06 - RADIUS vulnerabilities

0

0

Article ID: JSA10301 SECURITY_ADVISORIES Last Updated: 09 May 2013Version: 2.0
Legacy Advisory Id:
FA-SW-0203-001
Product Affected:
All releases of the JUNOS Internet software
Problem:
The CERT Coordination Center (CERT/CC) has recently issued an advisory describing two possible areas of vulnerability in implementations of the RADIUS protocol. These are identified by CERT/CC as:
  • VU#589523 - Multiple implementations of the RADIUS protocol contain a Digest Calculation buffer overflow
  • VU#936683 - Multiple implementations of the RADIUS protocol do not adequately validate the Vendor-Specific attribute Vendor-Length


Juniper Networks has examined its implementation of RADIUS and has determined that it is not susceptible to either of these potential vulnerabilities.
Solution:
No action is required.
Implementation:
No action is required.
Severity Level:
None
Severity Assessment:
All releases of the JUNOS software are free of risk from these vulnerabilities.

Related Links

Comment on this article > Affected Products Browse the Knowledge Base for more articles related to these product categories. Select a category to begin.

Getting Up and Running with Junos

Getting Up and Running with Junos Security Alerts and Vulnerabilities Product Alerts and Software Release Notices Problem Report (PR) Search Tool EOL Notices and Bulletins JTAC User Guide Customer Care User Guide Pathfinder SRX High Availability Configurator SRX VPN Configurator Training Courses and Videos End User Licence Agreement Global Search