CVE-2019-0009: Junos OS: EX2300 and EX3400: High disk I/O operations may disrupt the communication between RE and PFE
On EX2300 and EX3400 series, high disk I/O operations may disrupt the communication between the routing engine (RE) and the packet forwarding engine (PFE). In a virtual chassis (VC) deployment, this issue disrupts communication between the VC members. This issue does not affect other Junos platforms. Affected releases are Junos OS on EX2300 and EX3400 series: 15.1X53 versions prior to 15.1X53-D590; 18.1 versions prior to 18.1R2-S2, 18.1R3; 18.2 versions prior to 18.2R2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2019-0009.
Which Junos platforms are affected by this vulnerability?
This vulnerability affects Junos platforms EX2300 and EX3400.
How does this vulnerability impact communication between the routing engine and packet forwarding engine?
This vulnerability disrupts the communication between the routing engine (RE) and the packet forwarding engine (PFE) during high disk I/O operations.
Does this vulnerability affect virtual chassis (VC) deployments?
Yes, in a virtual chassis (VC) deployment, this vulnerability also disrupts communication between the VC members.
What is the severity of CVE-2019-0009?
CVE-2019-0009 has a severity rating of 5.5 (Medium).
How can I fix CVE-2019-0009?
Please refer to the Juniper advisory linked in the references for steps to mitigate this vulnerability.