CVE-2020-1634: Junos OS: High-End SRX Series: Multicast traffic might cause all FPCs to reset.
On High-End SRX Series devices, in specific configurations and when specific networking events or operator actions occur, an SPC receiving genuine multicast traffic may core. Subsequently, all FPCs in a chassis may reset causing a Denial of Service. This issue affects both IPv4 and IPv6. This issue affects: Juniper Networks Junos OS 12.3X48 version 12.3X48-D80 and later versions prior to 12.3X48-D95 on High-End SRX Series. This issue does not affect Branch SRX Series devices.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Junos OS (High-End SRX Series)to a version that resolves this vulnerability.Fixed in 12.3X48-D95
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-1634.
What is the severity of CVE-2020-1634?
The severity of CVE-2020-1634 is high with a severity value of 7.5.
Which Juniper products are affected by CVE-2020-1634?
The Juniper Junos software versions 12.3x48 and its derivatives are affected by CVE-2020-1634.
What is the impact of CVE-2020-1634?
CVE-2020-1634 can cause a Denial of Service (DoS) by triggering a reset of all FPCs in a chassis on High-End SRX Series devices.
How can I fix CVE-2020-1634?
To fix CVE-2020-1634, users are advised to upgrade to a patched version of Juniper Junos software.