CVE-2019-0052
published 2019-07-11CVE-2019-0052: The srxpfe process may crash on SRX Series services gateways when the UTM module processes a specific fragmented HTTP packet. The packet is misinterpreted as a…
PriorityP343high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
EPSS
1.84%
76.6th percentile
The srxpfe process may crash on SRX Series services gateways when the UTM module processes a specific fragmented HTTP packet. The packet is misinterpreted as a regular TCP packet which causes the processor to crash. This issue affects all SRX Series platforms that support URL-Filtering and have web-filtering enabled. Affected releases are Juniper Networks Junos OS: 12.3X48 versions prior to 12.3X48-D85 on SRX Series; 15.1X49 versions prior to 15.1X49-D181, 15.1X49-D190 on SRX Series; 17.3 versions on SRX Series; 17.4 versions prior to 17.4R1-S8, 17.4R2-S5, 17.4R3 on SRX Series; 18.1 versions prior to 18.1R3-S6 on SRX Series; 18.2 versions prior to 18.2R2-S1, 18.2R3 on SRX Series; 18.3 versions prior to 18.3R1-S2, 18.3R2 on SRX Series; 18.4 versions prior to 18.4R1-S1, 18.4R2 on SRX Series.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| juniper | junos | — | — |
| juniper | junos | — | — |
| juniper | junos | — | — |
| juniper | junos | — | — |
| juniper | junos | — | — |
| juniper | junos | — | — |
| juniper | junos | — | — |
| juniper | junos | — | — |
| juniper | junos_os | — | — |
| juniper | srx_series | — | — |
| juniper_networks | junos_os | — | — |
| juniper_networks | junos_os | — | — |
| juniper_networks | junos_os | — | — |
| juniper_networks | junos_os | — | — |
| juniper_networks | junos_os | — | — |
| juniper_networks | junos_os | — | — |
| juniper_networks | junos_os | — | — |
| juniper_networks | junos_os | — | — |
CVSS provenance
nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.07.8HIGHAV:N/AC:L/Au:N/C:N/I:N/A:C
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-q7jm-8335-rc9c: The srxpfe process may crash on SRX Series services gateways when the UTM module processes a specific fragmented HTTP packet
ghsa_unreviewed·2022-05-24
CVE-2019-0052 [HIGH] GHSA-q7jm-8335-rc9c: The srxpfe process may crash on SRX Series services gateways when the UTM module processes a specific fragmented HTTP packet
The srxpfe process may crash on SRX Series services gateways when the UTM module processes a specific fragmented HTTP packet. The packet is misinterpreted as a regular TCP packet which causes the processor to crash. This issue affects all SRX Series platforms that support URL-Filtering and have web-filtering enabled. Affected releases are Juniper Networks Junos OS: 12.3X48 versions prior to 12.3X48-D85 on SRX Series; 15.1X49 versions prior to 15.1X49-D181, 15.1X49-D190 on SRX Series; 17.3 versions on SRX Series; 17.4 versions prior to 17.4R1-S8, 17.4R2-S5, 17.4R3 on SRX Series; 18.1 versions prior to 18.1R3-S6 on SRX Series; 18.2 versions prior to 18.2R2-S1, 18.2R3 on SRX Series; 18.3 versions prior to 18.3R1-S2, 18.3R2 on SRX Series; 18.4 versions prior to 18.4R1-S1, 18.4R2 on SRX Series.
Juniper
CVE-2019-0052: The srxpfe process may crash on SRX Series services gateways when the UTM module processes a specific fragmented HTTP packet. The packet is misinterpr
vendor_juniper·2019-07-11·CVSS 7.5
CVE-2019-0052 [HIGH] CWE-404 CVE-2019-0052: The srxpfe process may crash on SRX Series services gateways when the UTM module processes a specific fragmented HTTP packet. The packet is misinterpr
CVE-2019-0052: The srxpfe process may crash on SRX Series services gateways when the UTM module processes a specific fragmented HTTP packet. The packet is misinterpreted as a regular TCP packet which causes the processor to crash. This issue affects all SRX Series platforms that support URL-Filtering and have web-filtering enabled. Affected releases are Juniper Networks Junos OS: 12.3X48 versions prior to 12.3X48-D85 on SRX Series; 15.1X49 versions prior to 15.1X49-D181, 15.1X49-D190 on SRX Series; 17.3 versions on SRX Series; 17.4 versions prior to 17.4R1-S8, 17.4R2-S5, 17.4R3 on SRX Series; 18.1 versions prior to 18.1R3-S6 on SRX Series; 18.2 versions prior to 18.2R2-S1, 18.2R3 on SRX Series; 18.3 versions prior to 18.3R1-S2, 18.3R2 on SRX Series; 18.4 versions prior to 18.4R1-S1, 18.4R2
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2018-11218 redis: Heap corruption in lua_cmsgpack.c
bugzilla·2018-06-12·CVSS 9.8
CVE-2018-11218 [CRITICAL] CVE-2018-11218 redis: Heap corruption in lua_cmsgpack.c
CVE-2018-11218 redis: Heap corruption in lua_cmsgpack.c
Redis is vulnerable to heap corruption in lua_cmsgpack.c. An attacker could exploit this to cause a denial of service or have other potential unspecified impact.
Discussion:
External References:
http://antirez.com/news/119
---
Created redis tracking bugs for this issue:
Affects: epel-all [bug 1591537]
Affects: fedora-all [bug 1591536]
---
Patches:
https://github.com/antirez/redis/commit/52a00201fca331217c3b4b8b634f6a0f57d6b7d3
https://github.com/antirez/redis/commit/5ccb6f7a791bf3490357b00a898885759d98bab0
---
This issue has been addressed in the following products:
Red Hat OpenStack Platform 10.0 (Newton)
Via RHSA-2019:0052 https://access.redhat.com/errata/RHSA-2019:0052
---
This issue has been addressed in the followi
Bugzilla
CVE-2018-11219 redis: Integer overflow in lua_struct.c:b_unpack()
bugzilla·2018-06-12·CVSS 9.8
CVE-2018-11219 [CRITICAL] CVE-2018-11219 redis: Integer overflow in lua_struct.c:b_unpack()
CVE-2018-11219 redis: Integer overflow in lua_struct.c:b_unpack()
Redis is vulnerable to an integer overflow in the lua_struct.c:b_unpack() function. A remote attacker could exploit this to cause a denial of service or have other unspecified impact.
Discussion:
External References:
http://antirez.com/news/119
---
Created redis tracking bugs for this issue:
Affects: epel-all [bug 1591538]
Affects: fedora-all [bug 1591540]
---
We already have 4.0.10
---
Patches:
https://github.com/antirez/redis/commit/1eb08bcd4634ae42ec45e8284923ac048beaa4c3
https://github.com/antirez/redis/commit/e89086e09a38cc6713bcd4b9c29abf92cf393936
---
This issue has been addressed in the following products:
Red Hat OpenStack Platform 10.0 (Newton)
Via RHSA-2019:0052 https://access.redhat.com/errata/RHSA
2019-07-11
Published