Medium Nessus Plugin ID 124238
SynopsisThe remote device is missing a vendor-supplied security patch.
DescriptionThe version of tested product installed on the remote host is prior to tested version. It is, therefore, affected by a vulnerability On Junos devices with the BGP graceful restart helper mode enabled or the BGP graceful restart mechanism enabled. A remote attacker can exploit this by simulating a specific BGP session restart to cause a denial of service as referenced in the JSA10932 advisory. Note that Nessus has not tested for this issue but has instead relied only on the application's self-reported version number.
SolutionApply the relevant Junos software release referenced in Juniper advisory JSA10932