First published: Wed Oct 10 2018(Updated: )
A denial of service vulnerability in the telnetd service on Junos OS allows remote unauthenticated users to cause high CPU usage which may affect system performance. Affected releases are Juniper Networks Junos OS: 12.1X46 versions prior to 12.1X46-D81 on SRX Series; 12.3 versions prior to 12.3R12-S11; 12.3X48 versions prior to 12.3X48-D80 on SRX Series; 15.1 versions prior to 15.1R7; 15.1X49 versions prior to 15.1X49-D150, 15.1X49-D160 on SRX Series; 15.1X53 versions prior to 15.1X53-D59 on EX2300/EX3400 Series; 15.1X53 versions prior to 15.1X53-D68 on QFX10K Series; 15.1X53 versions prior to 15.1X53-D235 on QFX5200/QFX5110 Series; 15.1X53 versions prior to 15.1X53-D495 on NFX Series; 16.1 versions prior to 16.1R4-S12, 16.1R6-S6, 16.1R7; 16.2 versions prior to 16.2R2-S7, 16.2R3; 17.1 versions prior to 17.1R2-S9, 17.1R3; 17.2 versions prior to 17.2R2-S6, 17.2R3; 17.2X75 versions prior to 17.2X75-D100; 17.3 versions prior to 17.3R2-S4, 17.3R3; 17.4 versions prior to 17.4R1-S5, 17.4R2; 18.2X75 versions prior to 18.2X75-D5.
Credit: sirt@juniper.net
Affected Software | Affected Version | How to fix |
---|---|---|
Juniper Junos | =12.1x46 | |
Juniper Junos | =12.1x46-d10 | |
Juniper Junos | =12.1x46-d15 | |
Juniper Junos | =12.1x46-d20 | |
Juniper Junos | =12.1x46-d25 | |
Juniper Junos | =12.1x46-d30 | |
Juniper Junos | =12.1x46-d35 | |
Juniper Junos | =12.1x46-d40 | |
Juniper Junos | =12.1x46-d45 | |
Juniper Junos | =12.1x46-d50 | |
Juniper Junos | =12.1x46-d55 | |
Juniper Junos | =12.1x46-d60 | |
Juniper Junos | =12.1x46-d65 | |
Juniper Junos | =12.3 | |
Juniper Junos | =12.3-r1 | |
Juniper Junos | =12.3-r11 | |
Juniper Junos | =12.3-r2 | |
Juniper Junos | =12.3-r3 | |
Juniper Junos | =12.3-r4 | |
Juniper Junos | =12.3-r5 | |
Juniper Junos | =12.3-r6 | |
Juniper Junos | =12.3-r7 | |
Juniper Junos | =12.3-r8 | |
Juniper Junos | =12.3-r9 | |
Juniper Junos | =12.3x48 | |
Juniper Junos | =12.3x48-d10 | |
Juniper Junos | =12.3x48-d15 | |
Juniper Junos | =12.3x48-d20 | |
Juniper Junos | =12.3x48-d25 | |
Juniper Junos | =12.3x48-d30 | |
Juniper Junos | =12.3x48-d35 | |
Juniper Junos | =12.3x48-d40 | |
Juniper Junos | =12.3x48-d45 | |
Juniper Junos | =12.3x48-d50 | |
Juniper Junos | =12.3x48-d55 | |
Juniper Junos | =12.3x48-d60 | |
Juniper Junos | =12.3x48-d65 | |
Juniper Junos | =12.3x48-d70 | |
Juniper Junos | =12.3x48-d75 | |
Juniper Junos | =15.1 | |
Juniper Junos | =15.1-f2 | |
Juniper Junos | =15.1-f3 | |
Juniper Junos | =15.1-f4 | |
Juniper Junos | =15.1-f5 | |
Juniper Junos | =15.1-f6 | |
Juniper Junos | =15.1-f7 | |
Juniper Junos | =15.1-r1 | |
Juniper Junos | =15.1-r2 | |
Juniper Junos | =15.1-r3 | |
Juniper Junos | =15.1-r6 | |
Juniper Junos | =15.1x49 | |
Juniper Junos | =15.1x49-d10 | |
Juniper Junos | =15.1x49-d100 | |
Juniper Junos | =15.1x49-d110 | |
Juniper Junos | =15.1x49-d120 | |
Juniper Junos | =15.1x49-d140 | |
Juniper Junos | =15.1x49-d20 | |
Juniper Junos | =15.1x49-d30 | |
Juniper Junos | =15.1x49-d35 | |
Juniper Junos | =15.1x49-d40 | |
Juniper Junos | =15.1x49-d45 | |
Juniper Junos | =15.1x49-d50 | |
Juniper Junos | =15.1x49-d55 | |
Juniper Junos | =15.1x49-d60 | |
Juniper Junos | =15.1x49-d65 | |
Juniper Junos | =15.1x49-d70 | |
Juniper Junos | =15.1x49-d75 | |
Juniper Junos | =15.1x49-d80 | |
Juniper Junos | =15.1x49-d90 | |
Juniper Junos | =15.1x53 | |
Juniper Junos | =15.1x53-d50 | |
Juniper Junos | =15.1x53-d51 | |
Juniper Junos | =15.1x53-d52 | |
Juniper Junos | =15.1x53-d55 | |
Juniper Junos | =15.1x53-d57 | |
Juniper Junos | =15.1x53-d58 | |
Juniper EX2300-24T | ||
Juniper EX3400 | ||
Juniper Junos | =15.1x53-d10 | |
Juniper Junos | =15.1x53-d20 | |
Juniper Junos | =15.1x53-d21 | |
Juniper Junos | =15.1x53-d30 | |
Juniper Junos | =15.1x53-d32 | |
Juniper Junos | =15.1x53-d33 | |
Juniper Junos | =15.1x53-d34 | |
Juniper Junos | =15.1x53-d60 | |
Juniper Junos | =15.1x53-d61 | |
Juniper Junos | =15.1x53-d62 | |
Juniper Junos | =15.1x53-d63 | |
Juniper Junos | =15.1x53-d64 | |
Juniper Junos | =15.1x53-d65 | |
Juniper Junos | =15.1x53-d66 | |
Juniper QFX10000 | ||
Juniper Junos | =15.1x53-d210 | |
Juniper Junos | =15.1x53-d230 | |
Juniper Junos | =15.1x53-d231 | |
Juniper Junos | =15.1x53-d232 | |
Juniper QFX5110 | ||
Juniper QFX5200-48Y | ||
Juniper Junos | =15.1x53-d40 | |
Juniper Junos | =15.1x53-d45 | |
Juniper Junos | =15.1x53-d490 | |
Juniper NFX | ||
Juniper NFX | ||
Juniper Junos | =16.1 | |
Juniper Junos | =16.1-r1 | |
Juniper Junos | =16.1-r2 | |
Juniper Junos | =16.1-r3 | |
Juniper Junos | =16.1-r4 | |
Juniper Junos | =16.1-r5 | |
Juniper Junos | =16.2 | |
Juniper Junos | =16.2-r1 | |
Juniper Junos | =17.1 | |
Juniper Junos | =17.1-r1 | |
Juniper Junos | =17.2 | |
Juniper Junos | =17.2-r1 | |
Juniper Junos | =17.2x75 | |
Juniper Junos | =17.2x75-d50 | |
Juniper Junos | =17.2x75-d90 | |
Juniper Junos | =17.3 | |
Juniper Junos | =17.3-r1 | |
Juniper Junos | =17.4 | |
Juniper Junos | =18.2x75 |
The following software releases have been updated to resolve this specific issue: 12.1X46-D81, 12.3R12-S11, 12.3R13, 12.3X48-D80, 15.1R7, 15.1X49-D150, 15.1X49-D160, 15.1X53-D235, 15.1X53-D495, 15.1X53-D59, 15.1X53-D68, 16.1R4-S12, 16.1R6-S6, 16.1R7, 16.2R2-S7, 16.2R3, 17.1R2-S9, 17.1R3, 17.2R2-S6, 17.2R3, 17.2X75-D100, 17.2X75-D110, 17.3R2-S4, 17.3R3, 17.4R1-S5, 17.4R2, 18.1R1, 18.1R2, 18.2R1, 18.2X75-D5, and all subsequent releases.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-0061 has been classified as a medium severity vulnerability due to its potential to cause denial of service.
To fix CVE-2018-0061, update your Junos OS to a version that is not affected, specifically 12.1X46-D81 or later.
CVE-2018-0061 affects Junos OS versions prior to 12.1X46-D81 and certain versions of 12.3 and others listed in the advisory.
CVE-2018-0061 may lead to high CPU usage, significantly affecting the performance of affected systems.
Organizations using vulnerable versions of Juniper Networks' Junos OS on devices like SRX Series and certain others may be affected by CVE-2018-0061.