First published: Wed Jan 10 2018(Updated: )
QFX and EX Series switches configured to drop traffic when the MAC move limit is exceeded will forward traffic instead of dropping traffic. This can lead to denials of services or other unintended conditions. Affected releases are Juniper Networks Junos OS: 14.1X53 versions prior to 14.1X53-D40; 15.1X53 versions prior to 15.1X53-D55; 15.1 versions prior to 15.1R7.
Credit: sirt@juniper.net
Affected Software | Affected Version | How to fix |
---|---|---|
Juniper JUNOS | =14.1x53 | |
Juniper JUNOS | =14.1x53-d10 | |
Juniper JUNOS | =14.1x53-d15 | |
Juniper JUNOS | =14.1x53-d16 | |
Juniper JUNOS | =14.1x53-d25 | |
Juniper JUNOS | =14.1x53-d26 | |
Juniper JUNOS | =14.1x53-d27 | |
Juniper JUNOS | =14.1x53-d30 | |
Juniper JUNOS | =14.1x53-d35 | |
Juniper Ex Rps | ||
Juniper Ex2200 | ||
Juniper Ex2200-c | ||
Juniper Ex2300 | ||
Juniper Ex2300-c | ||
Juniper Ex3300 | ||
Juniper Ex3400 | ||
Juniper Ex4200 | ||
Juniper Ex4300 | ||
Juniper Ex4550 | ||
Juniper EX4600 | ||
Juniper Ex9200 | ||
Juniper Qfx10002 | ||
Juniper Qfx10008 | ||
Juniper Qfx10016 | ||
Juniper Qfx5100 | ||
Juniper Qfx5110 | ||
Juniper Qfx5200 | ||
Juniper JUNOS | =15.1-r1 | |
Juniper JUNOS | =15.1-r2 | |
Juniper JUNOS | =15.1-r3 | |
Juniper JUNOS | =15.1-r4 | |
Juniper JUNOS | =15.1-r5 | |
Juniper JUNOS | =15.1-r6 | |
Juniper JUNOS | =15.1x53-d20 | |
Juniper JUNOS | =15.1x53-d21 | |
Juniper JUNOS | =15.1x53-d30 | |
Juniper JUNOS | =15.1x53-d32 | |
Juniper JUNOS | =15.1x53-d33 | |
Juniper JUNOS | =15.1x53-d34 | |
Juniper JUNOS | =15.1x53-d50 | |
Juniper JUNOS | =15.1x53-d51 | |
Juniper JUNOS | =15.1x53-d52 |
The following software releases have been updated to resolve this specific issue: 14.1X53-D40, 15.1X53-D55, 15.1X53-D60, 16.1R1, and all subsequent releases.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-0005 is a vulnerability found in QFX and EX Series switches that can lead to denials of services or other unintended conditions.
CVE-2018-0005 affects Juniper JUNOS versions prior to 14.1X53-D40 and 15.1, leading to potential denials of services or other unintended conditions.
The severity level of CVE-2018-0005 is high with a score of 8.8.
To fix CVE-2018-0005 vulnerability, update your Juniper JUNOS to version 14.1X53-D40 or later.
More information about CVE-2018-0005 can be found at the following references: [SecurityTracker](http://www.securitytracker.com/id/1040182) and [Juniper Knowledge Base](https://kb.juniper.net/JSA10833).