CVE-2014-0618

Description

Juniper Junos before 10.4 before 10.4R16, 11.4 before 11.4R8, 12.1R before 12.1R7, 12.1X44 before 12.1X44-D20, and 12.1X45 before 12.1X45-D10 on SRX Series service gateways, when used as a UAC enforcer and captive portal is enabled, allows remote attackers to cause a denial of service (flowd crash) via a crafted HTTP message.

Risk Information

Base Score
7.5
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.462

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are fixed in junos 10.4r16NCM
Multiple Vulnerabilities are fixed in junos 11.4r8NCM
Multiple Vulnerabilities are fixed in junos 12.1r7NCM
Vulnerabilities CVE-2013-4686,CVE-2013-6012,CVE-2014-0618 are fixed in junos 12.1x44-d20NCM
Vulnerabilities CVE-2013-6013,CVE-2014-0618 are fixed in junos 12.1x45-d10NCM
CVE-2014-0618NCM

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-1704488Security Update for junos 9.2r1
PATCH-1704488Security Update for junos 9.2r1
PATCH-1704488Security Update for junos 9.2r1
PATCH-1704488Security Update for junos 9.2r1
PATCH-1704488Security Update for junos 9.2r1

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234