Support Support Downloads Knowledge Base Case Manager My Juniper Community

Knowledge Base

Search our Knowledge Base sites to find answers to your questions.

Ask All Knowledge Base Sites All Knowledge Base Sites JunosE Defect (KA)Knowledge BaseSecurity AdvisoriesTechnical BulletinsTechnotes Sign in to display secure content and recently viewed articles

2014-06 Security Bulletin: NetScreen Firewall: Malformed IPv6 packet DoS issue (CVE-2014-3814)

0

0

Article ID: JSA10632 SECURITY_ADVISORIES Last Updated: 11 Jun 2014Version: 3.0
Product Affected:
NetScreen Firewalls
Problem:
 A Denial of Service (DoS) issue has been found in Juniper Networks NetScreen Firewall products. When encountered, this issue can cause the device to crash and reboot. If an attacker were to repeatedly exploit the issue a sustained denial of service could take place on the device. The issue is caused when a certain sequence of malformed IPv6 packets are sent to the device's IP directly. This issue will not take place if the packets are traversing the network through the firewall.

Juniper SIRT is not aware of any malicious exploitation of this vulnerability.

This issue has been assigned CVE-2014-3814
Solution:
 A software update for ScreenOS has been released to resolve this issue. The release containing the fix includes ScreenOS 6.3r17 and subsequent releases

This issue is being tracked as PR 804557 and is visible on the Customer Support website.

KB16765 - "In which releases are vulnerabilities fixed?" describes which release vulnerabilities are fixed as per our End of Engineering and End of Life support policies.
Workaround:
 There is no workaround for this issue. An upgrade to a fixed version of the software for the fix.
Implementation:
 How to obtain fixed software:

Software release Service Packages are available at http://support.juniper.net from the "Download Software" links. Select "Screen OS" and find 6.3r17 for your needed platform.
CVSS Score:
7.8 (AV:N/AC:L/Au:N/C:N/I:N/A:C)
Severity Level:
High
Acknowledgements:
 

Related Links

Affected Products Browse the Knowledge Base for more articles related to these product categories. Select a category to begin.

Getting Up and Running with Junos

Getting Up and Running with Junos Security Alerts and Vulnerabilities Product Alerts and Software Release Notices Problem Report (PR) Search Tool EOL Notices and Bulletins JTAC User Guide Customer Care User Guide Pathfinder SRX High Availability Configurator SRX VPN Configurator Training Courses and Videos End User Licence Agreement Global Search