CVE-2015-5363Juniper Junos vulnerability

CWE-195 documents4 sources
Severity
5.0MEDIUMNVD
EPSS
0.4%
top 41.73%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 16
Latest updateMay 17

Description

The SRX Network Security Daemon (nsd) in Juniper SRX Series services gateways with Junos 12.1X44 before 12.1X44-D50, 12.1X46 before 12.1X46-D35, 12.1X47 before 12.1X47-D25, and 12.3X48 before 12.3X48-D15 allows remote DNS servers to cause a denial of service (crash) via a crafted DNS response.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages3 packages

NVDjuniper/junos4 versions+3

🔴Vulnerability Details

1
GHSA
GHSA-qcc4-68mr-qhx3: The SRX Network Security Daemon (nsd) in Juniper SRX Series services gateways with Junos 122022-05-17

📋Vendor Advisories

1
Juniper
CVE-2015-5363: The SRX Network Security Daemon (nsd) in Juniper SRX Series services gateways with Junos 12.1X44 before 12.1X44-D50, 12.1X46 before 12.1X46-D35, 12.1X2015-07-16

💬Community

1
Bugzilla
CVE-2015-8914 CVE-2016-5362 CVE-2016-5363 openstack-neutron: various flaws [openstack-rdo]2016-06-23