Juniper Junos MPLS DoS (PSN-2012-04-546)

medium Nessus Plugin ID 58875

Synopsis

The remote router has a denial of service vulnerability.

Description

According to its self-reported version number, the version of Junos running on the remote host has a denial of service vulnerability.
When MPLS is enabled, receiving a high rate of Pseudo Wire (l2vpn or l2circuit) control words from an adjacent node can cause the routing engine (RE) to become overloaded. This could result in an RE switchover, or a reboot in single RE environments.

Solution

Apply the relevant Junos upgrade referenced in Juniper advisory PSN-2012-04-546.

See Also

http://www.nessus.org/u?e80736ee

Plugin Details

Severity: Medium

ID: 58875

File Name: juniper_psn-2012-04-546.nasl

Version: 1.8

Type: combined

Published: 4/25/2012

Updated: 8/8/2018

Supported Sensors: Nessus

Risk Information

CVSS v2

Risk Factor: Medium

Base Score: 5.4

Temporal Score: 4

Vector: CVSS2#AV:N/AC:H/Au:N/C:N/I:N/A:C

Vulnerability Information

CPE: cpe:/o:juniper:junos

Required KB Items: Host/Juniper/model, Host/Juniper/JUNOS/Version

Patch Publication Date: 4/11/2012

Vulnerability Publication Date: 4/11/2012