"value":"To be exposed to this issue both the following statements needs to be configured on the device running a vulnerable OS Version:\n\n [protocols rsvp interface <interface> link-protection max-bypasses]\n [protocols rsvp interface <interface> link-protection bandwidth]"
"value":"An Incomplete Cleanup vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS).\n\nAn rpd crash can occur when an MPLS TE tunnel configuration change occurs on a directly connected router.\nThis issue affects:\nJuniper Networks Junos OS\nAll versions prior to 18.4R2-S7;\n19.1 versions prior to 19.1R3-S2;\n19.2 versions prior to 19.2R3;\n19.3 versions prior to 19.3R3;\n19.4 versions prior to 19.4R3;\n20.1 versions prior to 20.1R2;\n20.2 versions prior to 20.2R2.\n\nJuniper Networks Junos OS Evolved\nAll versions prior to 19.2R3-EVO;\n19.3 versions prior to 19.3R3-EVO;\n19.4 versions prior to 19.4R3-EVO;\n20.1 versions prior to 20.1R3-EVO;\n20.2 versions prior to 20.2R2-EVO."
}
]
},
"exploit":[
{
"lang":"eng",
"value":"Juniper SIRT is not aware of any malicious exploitation of this vulnerability."
"value":"The following software releases have been updated to resolve this specific issue: \nJunos OS: 18.4R2-S7, 19.1R3-S2, 19.2R3, 19.3R3, 19.4R3, 20.1R2, 20.2R2, 20.3R1, and all subsequent releases.\nJunos OS Evolved: 19.2R3-EVO, 19.3R3-EVO, 19.4R3-EVO, 20.1R3-EVO, 20.2R2-EVO, 20.3R1-EVO, and all subsequent releases."