ID

VAR-201404-0169


CVE

CVE-2014-0614


TITLE

Juniper Junos Service disruption in (DoS) Vulnerabilities

Trust: 0.8

sources: JVNDB: JVNDB-2014-002017

DESCRIPTION

Juniper Junos 13.2 before 13.2R3 and 13.3 before 13.3R1, when PIM is enabled, allows remote attackers to cause a denial of service (kernel panic and crash) via a large number of crafted IGMP packets. Juniper Junos is prone to a remote denial-of-service vulnerability. An attacker can exploit this issue to crash the affected device, denying service to legitimate users. Juniper Networks Juniper Junos is a set of network operating system of Juniper Networks (Juniper Networks) dedicated to the company's hardware system. The operating system provides a secure programming interface and Junos SDK

Trust: 1.98

sources: NVD: CVE-2014-0614 // JVNDB: JVNDB-2014-002017 // BID: 66762 // VULHUB: VHN-68107

AFFECTED PRODUCTS

vendor:junipermodel:junosscope:eqversion:13.2

Trust: 1.6

vendor:junipermodel:junosscope:eqversion:13.3

Trust: 1.6

vendor:junipermodel:junos osscope:eqversion:13.2r3

Trust: 0.8

vendor:junipermodel:junos osscope:eqversion:13.3r1

Trust: 0.8

vendor:junipermodel:junos osscope:ltversion:13.2

Trust: 0.8

vendor:junipermodel:junos osscope:ltversion:13.3

Trust: 0.8

vendor:junipermodel:junos 13.3r1scope: - version: -

Trust: 0.3

vendor:junipermodel:junos 13.2r3scope: - version: -

Trust: 0.3

sources: BID: 66762 // JVNDB: JVNDB-2014-002017 // CNNVD: CNNVD-201404-187 // NVD: CVE-2014-0614

CVSS

SEVERITY

CVSSV2

CVSSV3

nvd@nist.gov: CVE-2014-0614
value: HIGH

Trust: 1.0

NVD: CVE-2014-0614
value: HIGH

Trust: 0.8

CNNVD: CNNVD-201404-187
value: HIGH

Trust: 0.6

VULHUB: VHN-68107
value: HIGH

Trust: 0.1

nvd@nist.gov: CVE-2014-0614
severity: HIGH
baseScore: 7.1
vectorString: AV:N/AC:M/AU:N/C:N/I:N/A:C
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 8.6
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 1.8

VULHUB: VHN-68107
severity: HIGH
baseScore: 7.1
vectorString: AV:N/AC:M/AU:N/C:N/I:N/A:C
accessVector: NETWORK
accessComplexity: MEDIUM
authentication: NONE
confidentialityImpact: NONE
integrityImpact: NONE
availabilityImpact: COMPLETE
exploitabilityScore: 8.6
impactScore: 6.9
acInsufInfo: NONE
obtainAllPrivilege: NONE
obtainUserPrivilege: NONE
obtainOtherPrivilege: NONE
userInteractionRequired: NONE
version: 2.0

Trust: 0.1

sources: VULHUB: VHN-68107 // JVNDB: JVNDB-2014-002017 // CNNVD: CNNVD-201404-187 // NVD: CVE-2014-0614

PROBLEMTYPE DATA

problemtype:NVD-CWE-noinfo

Trust: 1.0

sources: NVD: CVE-2014-0614

THREAT TYPE

remote

Trust: 0.6

sources: CNNVD: CNNVD-201404-187

TYPE

Unknown

Trust: 0.3

sources: BID: 66762

CONFIGURATIONS

sources: JVNDB: JVNDB-2014-002017

PATCH

title:JSA10618url:http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10618

Trust: 0.8

sources: JVNDB: JVNDB-2014-002017

EXTERNAL IDS

db:BIDid:66762

Trust: 2.8

db:NVDid:CVE-2014-0614

Trust: 2.8

db:SECUNIAid:57819

Trust: 2.5

db:JUNIPERid:JSA10618

Trust: 2.0

db:SECTRACKid:1030062

Trust: 1.7

db:JVNDBid:JVNDB-2014-002017

Trust: 0.8

db:CNNVDid:CNNVD-201404-187

Trust: 0.7

db:VULHUBid:VHN-68107

Trust: 0.1

sources: VULHUB: VHN-68107 // BID: 66762 // JVNDB: JVNDB-2014-002017 // CNNVD: CNNVD-201404-187 // NVD: CVE-2014-0614

REFERENCES

url:http://secunia.com/advisories/57819

Trust: 3.1

url:http://www.securityfocus.com/bid/66762

Trust: 2.5

url:http://kb.juniper.net/infocenter/index?page=content&id=jsa10618

Trust: 1.9

url:http://securitytracker.com/id?1030062

Trust: 1.7

url:http://cve.mitre.org/cgi-bin/cvename.cgi?name=cve-2014-0614

Trust: 0.8

url:http://web.nvd.nist.gov/view/vuln/detail?vulnid=cve-2014-0614

Trust: 0.8

url:http://www.juniper.net

Trust: 0.3

url:http://kb.juniper.net/infocenter/index?page=content&id=jsa10618

Trust: 0.1

sources: VULHUB: VHN-68107 // BID: 66762 // JVNDB: JVNDB-2014-002017 // CNNVD: CNNVD-201404-187 // NVD: CVE-2014-0614

CREDITS

The vendor reported this issue.

Trust: 0.3

sources: BID: 66762

SOURCES

db:VULHUBid:VHN-68107
db:BIDid:66762
db:JVNDBid:JVNDB-2014-002017
db:CNNVDid:CNNVD-201404-187
db:NVDid:CVE-2014-0614

LAST UPDATE DATE

2025-04-13T23:21:28.066000+00:00


SOURCES UPDATE DATE

db:VULHUBid:VHN-68107date:2014-04-15T00:00:00
db:BIDid:66762date:2014-04-10T00:00:00
db:JVNDBid:JVNDB-2014-002017date:2014-04-16T00:00:00
db:CNNVDid:CNNVD-201404-187date:2014-04-17T00:00:00
db:NVDid:CVE-2014-0614date:2025-04-12T10:46:40.837

SOURCES RELEASE DATE

db:VULHUBid:VHN-68107date:2014-04-14T00:00:00
db:BIDid:66762date:2014-04-10T00:00:00
db:JVNDBid:JVNDB-2014-002017date:2014-04-16T00:00:00
db:CNNVDid:CNNVD-201404-187date:2014-04-17T00:00:00
db:NVDid:CVE-2014-0614date:2014-04-14T15:09:06.303