Juniper Junos GNU libc glob Remote DoS (JSA10598)
Medium Nessus Plugin ID 70481
SynopsisThe remote device is missing a vendor-supplied security patch.
DescriptionAccording to its self-reported version number, the remote Juniper Junos device is affected by a denial of service vulnerability due to a flaw in the glob implementation in libc. An authenticated, remote attacker can exploit this, via a crafted glob expression that does not match any pathnames, to cause a denial of service condition through consumption of CPU and memory resources.
SolutionApply the relevant Junos software release referenced in Juniper advisory JSA10598.