Executive Summary

NameCVE-2018-0048First vendor Publication2018-10-10
VendorCveLast vendor Modification2018-10-16

Security-Database Scoring CVSS v2

Cvss vector :
Cvss Base ScoreNot DefinedAttack RangeNot Defined
Cvss Impact ScoreNot DefinedAttack ComplexityNot Defined
Cvss Expoit ScoreNot DefinedAuthenticationNot Defined
Calculate full CVSS 2.0 Vectors scores


A vulnerability in the Routing Protocols Daemon (RPD) with Juniper Extension Toolkit (JET) support can allow a network based unauthenticated attacker to cause a severe memory exhaustion condition on the device. This can have an adverse impact on the system performance and availability. This issue only affects devices with JET support running Junos OS 17.2R1 and subsequent releases. Other versions of Junos OS are unaffected by this vulnerability. Affected releases are Juniper Networks Junos OS: 17.2 versions prior to 17.2R1-S7, 17.2R2-S6, 17.2R3; 17.2X75 versions prior to 17.2X75-D102, 17.2X75-D110; 17.3 versions prior to 17.3R2-S4, 17.3R3; 17.4 versions prior to 17.4R1-S5, 17.4R2; 18.1 versions prior to 18.1R2-S3, 18.1R3;

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-0048

Nessus® Vulnerability Scanner

2018-10-19Name : The remote device is missing a vendor-supplied security patch.
File : juniper_jsa10882.nasl - Type : ACT_GATHER_INFO

Sources (Detail)

BID http://www.securityfocus.com/bid/105564
CONFIRM https://kb.juniper.net/JSA10882
SECTRACK http://www.securitytracker.com/id/1041849

Alert History

If you want to see full details history, please login or register.
2018-10-16 17:20:02
  • Multiple Updates
2018-10-11 17:19:46
  • Multiple Updates
2018-10-11 00:20:10
  • First insertion