CVE-2013-4684: High severity junos os evolved vulnerability
flowd in Juniper Junos 10.4 before 10.4S14, 11.4 before 11.4R8, 12.1 before 12.1R7, and 12.1X44 before 12.1X44-D15 on SRX devices, when PIM and NAT are enabled, allows remote attackers to cause a denial of service (daemon crash) via crafted PIM packets, aka PR 842253.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-4684?
CVE-2013-4684 is considered a high severity vulnerability as it allows remote attackers to cause a denial of service.
How do I fix CVE-2013-4684?
To fix CVE-2013-4684, upgrade the Junos software to a version that is not affected, such as 10.4S14 or later.
Which devices are affected by CVE-2013-4684?
CVE-2013-4684 affects several Juniper SRX devices running vulnerable versions of the Junos operating system.
What types of attacks can be executed using CVE-2013-4684?
Exploiting CVE-2013-4684 can result in a denial of service due to daemon crashes caused by crafted PIM packets.
What configurations can increase the risk of CVE-2013-4684?
Having both PIM and NAT enabled on affected Junos devices increases the risk of exploitation for CVE-2013-4684.