HIGH · 7.4

CVE-2018-0005

QFX and EX Series switches configured to drop traffic when the MAC move limit is exceeded will forward traffic instead of dropping traffic. This can lead to denials of services or other unintended con...

Vulnerability Description

QFX and EX Series switches configured to drop traffic when the MAC move limit is exceeded will forward traffic instead of dropping traffic. This can lead to denials of services or other unintended conditions. Affected releases are Juniper Networks Junos OS: 14.1X53 versions prior to 14.1X53-D40; 15.1X53 versions prior to 15.1X53-D55; 15.1 versions prior to 15.1R7.

CVSS Score

7.4

HIGH

CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Attack Vector
ADJACENT_NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
CHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
JuniperJunos14.1x53
JuniperEx Rps-
JuniperEx2200-
JuniperEx2200-C-
JuniperEx2300-
JuniperEx2300-C-
JuniperEx3300-
JuniperEx3400-
JuniperEx4200-
JuniperEx4300-
JuniperEx4550-
JuniperEx4600-
JuniperEx9200-
JuniperQfx10002-
JuniperQfx10008-
JuniperQfx10016-
JuniperQfx5100-
JuniperQfx5110-
JuniperQfx5200-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2018-0005?

CVE-2018-0005 is a vulnerability with a CVSS score of 7.4 (HIGH). QFX and EX Series switches configured to drop traffic when the MAC move limit is exceeded will forward traffic instead of dropping traffic. This can lead to denials of services or other unintended con...

How severe is CVE-2018-0005?

CVE-2018-0005 has been rated HIGH with a CVSS base score of 7.4/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2018-0005?

Check the references section above for vendor advisories and patch information. Affected products include: Juniper Junos, Juniper Ex Rps, Juniper Ex2200, Juniper Ex2200-C, Juniper Ex2300.