Vulnerability Description
The Juniper Networks NetScreen Firewall devices with ScreenOS before 6.3r17, when configured to use the internal DNS lookup client, allows remote attackers to cause a denial of service (crash and reboot) via a sequence of malformed packets to the device IP.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Juniper | Screenos | <= 6.3.0 |
| Juniper | Netscreen-5200 | - |
| Juniper | Netscreen-5400 | - |
Related Weaknesses (CWE)
References
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10632Vendor Advisory
- http://secunia.com/advisories/59026
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10632Vendor Advisory
- http://secunia.com/advisories/59026
FAQ
What is CVE-2014-3814?
CVE-2014-3814 is a vulnerability with a CVSS score of 7.8 (HIGH). The Juniper Networks NetScreen Firewall devices with ScreenOS before 6.3r17, when configured to use the internal DNS lookup client, allows remote attackers to cause a denial of service (crash and rebo...
How severe is CVE-2014-3814?
CVE-2014-3814 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2014-3814?
Check the references section above for vendor advisories and patch information. Affected products include: Juniper Screenos, Juniper Netscreen-5200, Juniper Netscreen-5400.