CVE-2016-4927: Input Validation
Published Mar 20, 2017
·Updated
Insufficient validation of SSH keys in Junos Space before 15.2R2 allows man-in-the-middle (MITM) type of attacks while a Space device is communicating with managed devices.
Affected Software
1 affected component
Juniper Junos Space<=15.2
Event History
Mar 20, 2017
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-4927?
CVE-2016-4927 has been classified with a medium severity due to its ability to enable man-in-the-middle attacks.
2
How do I fix CVE-2016-4927?
To fix CVE-2016-4927, upgrade Junos Space to version 15.2R2 or later.
3
What devices are affected by CVE-2016-4927?
CVE-2016-4927 affects Junos Space versions prior to 15.2R2.
4
What type of attack does CVE-2016-4927 enable?
CVE-2016-4927 enables man-in-the-middle (MITM) attacks during communication between Space devices and managed devices.
5
Is there a workaround for CVE-2016-4927?
There is no official workaround for CVE-2016-4927; upgrading is the recommended solution.