First published: Wed Jan 10 2018(Updated: )
QFX and EX Series switches configured to drop traffic when the MAC move limit is exceeded will forward traffic instead of dropping traffic. This can lead to denials of services or other unintended conditions. Affected releases are Juniper Networks Junos OS: 14.1X53 versions prior to 14.1X53-D40; 15.1X53 versions prior to 15.1X53-D55; 15.1 versions prior to 15.1R7.
Credit: sirt@juniper.net
Affected Software | Affected Version | How to fix |
---|---|---|
Junos OS Evolved | =14.1x53 | |
Junos OS Evolved | =14.1x53-d10 | |
Junos OS Evolved | =14.1x53-d15 | |
Junos OS Evolved | =14.1x53-d16 | |
Junos OS Evolved | =14.1x53-d25 | |
Junos OS Evolved | =14.1x53-d26 | |
Junos OS Evolved | =14.1x53-d27 | |
Junos OS Evolved | =14.1x53-d30 | |
Junos OS Evolved | =14.1x53-d35 | |
Juniper EX Series | ||
Juniper EX2200-C | ||
Juniper EX2200 | ||
Juniper EX2300-24T | ||
Juniper EX2300-C | ||
Juniper EX3300-VX | ||
Juniper EX3400 | ||
Juniper EX Series | ||
Juniper EX4300-24T | ||
Juniper EX Series | ||
Juniper EX4600 | ||
Juniper EX9200 | ||
Juniper QFX10002-60C | ||
Juniper Networks QFX-Series | ||
Juniper Networks QFX-Series | ||
Juniper QFX5100 | ||
Juniper QFX5110 | ||
Juniper QFX5200-32C | ||
Junos OS Evolved | =15.1-r1 | |
Junos OS Evolved | =15.1-r2 | |
Junos OS Evolved | =15.1-r3 | |
Junos OS Evolved | =15.1-r4 | |
Junos OS Evolved | =15.1-r5 | |
Junos OS Evolved | =15.1-r6 | |
Junos OS Evolved | =15.1x53-d20 | |
Junos OS Evolved | =15.1x53-d21 | |
Junos OS Evolved | =15.1x53-d30 | |
Junos OS Evolved | =15.1x53-d32 | |
Junos OS Evolved | =15.1x53-d33 | |
Junos OS Evolved | =15.1x53-d34 | |
Junos OS Evolved | =15.1x53-d50 | |
Junos OS Evolved | =15.1x53-d51 | |
Junos OS Evolved | =15.1x53-d52 |
The following software releases have been updated to resolve this specific issue: 14.1X53-D40, 15.1X53-D55, 15.1X53-D60, 16.1R1, and all subsequent releases.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-0005 is a vulnerability found in QFX and EX Series switches that can lead to denials of services or other unintended conditions.
CVE-2018-0005 affects Juniper JUNOS versions prior to 14.1X53-D40 and 15.1, leading to potential denials of services or other unintended conditions.
The severity level of CVE-2018-0005 is high with a score of 8.8.
To fix CVE-2018-0005 vulnerability, update your Juniper JUNOS to version 14.1X53-D40 or later.
More information about CVE-2018-0005 can be found at the following references: [SecurityTracker](http://www.securitytracker.com/id/1040182) and [Juniper Knowledge Base](https://kb.juniper.net/JSA10833).