Juniper Junos libgd Compressed GD2 Data RCE (JSA10798)
High Nessus Plugin ID 102073
SynopsisThe remote device is affected by a remote code execution vulnerability.
DescriptionAccording to its self-reported version number, the remote Juniper Junos device is affected by an integer signedness error in the included GD Graphics Library (libgd) when handling compressed GD2 data due to improper validation of user-supplied input. An unauthenticated, remote attacker can exploit this, via specially crafted compressed GD2 data, to cause a heap-based buffer overflow, resulting in a denial of service condition or the execution of arbitrary code.
SolutionUpgrade to the relevant Junos software release referenced in Juniper security advisory JSA10798.