CVE-2015-7748

Description

Juniper chassis with Trio (Trinity) chipset line cards and Junos OS 13.3 before 13.3R8, 14.1 before 14.1R6, 14.2 before 14.2R5, and 15.1 before 15.1R2 allow remote attackers to cause a denial of service (MPC line card crash) via a crafted uBFD packet.

Risk Information

Base Score
7.5
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
Exploitation Probability
0.516

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2015-7748,CVE-2016-1258,CVE-2016-1261,CVE-2016-1269 are fixed in junos 13.3r8NCM
Multiple Vulnerabilities are fixed in junos 14.1r6NCM
Vulnerabilities CVE-2015-7748,CVE-2016-1258,CVE-2016-1261,CVE-2016-4922 are fixed in junos 14.2r5NCM
Vulnerabilities CVE-2015-7748,CVE-2016-1256,CVE-2016-1269,CVE-2020-1639 are fixed in junos 15.1R2NCM
Improper Input Validation Vulnerability (CVE-2015-7748)NCM

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-1704488Security Update for junos 9.2r1
PATCH-1704488Security Update for junos 9.2r1
PATCH-1704488Security Update for junos 9.2r1
PATCH-1704488Security Update for junos 9.2r1

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234