2024-04-12 16:03:28 +00:00
{
"id" : "CVE-2024-30410" ,
"sourceIdentifier" : "sirt@juniper.net" ,
"published" : "2024-04-12T15:15:25.940" ,
2025-02-06 19:03:49 +00:00
"lastModified" : "2025-02-06T18:21:04.777" ,
"vulnStatus" : "Analyzed" ,
2024-07-14 02:06:08 +00:00
"cveTags" : [ ] ,
2024-04-12 16:03:28 +00:00
"descriptions" : [
{
"lang" : "en" ,
2024-05-16 22:03:28 +00:00
"value" : "An Incorrect Behavior Order in the routing engine (RE) of Juniper Networks Junos OS on EX4300 Series allows traffic intended to the device to reach the RE\u00a0instead of being discarded when the\u00a0discard term is set in loopback (lo0) interface. The intended function is that the lo0 firewall filter takes precedence over the revenue interface firewall filter.\u00a0\n\nThis issue affects only IPv6 firewall filter.\n\nThis issue only affects the EX4300 switch. No other products or platforms are affected by this vulnerability.\u00a0\n\nThis issue affects Juniper Networks Junos OS:\n\n * All versions before 20.4R3-S10,\n * from 21.2 before 21.2R3-S7,\n * from 21.4 before 21.4R3-S6."
2024-04-15 14:03:45 +00:00
} ,
{
"lang" : "es" ,
"value" : "Un orden de comportamiento incorrecto en el motor de enrutamiento (RE) de Juniper Networks Junos OS en la serie EX4300 permite que el tr\u00e1fico destinado al dispositivo llegue al RE en lugar de descartarse cuando el t\u00e9rmino de descarte se establece en la interfaz de bucle invertido (lo0). La funci\u00f3n prevista es que el filtro de firewall lo0 tenga prioridad sobre el filtro de firewall de la interfaz de ingresos. Este problema afecta \u00fanicamente al filtro de firewall IPv6. Este problema s\u00f3lo afecta al conmutador EX4300. Ning\u00fan otro producto o plataforma se ve afectado por esta vulnerabilidad. Este problema afecta a Juniper Networks Junos OS: * Todas las versiones anteriores a 20.4R3-S10, * desde 21.2 anterior a 21.2R3-S7, * desde 21.4 anterior a 21.4R3-S6."
2024-04-12 16:03:28 +00:00
}
] ,
"metrics" : {
2024-07-14 02:06:08 +00:00
"cvssMetricV40" : [
{
"source" : "sirt@juniper.net" ,
2025-03-09 03:03:50 +00:00
"type" : "Primary" ,
2024-07-14 02:06:08 +00:00
"cvssData" : {
"version" : "4.0" ,
"vectorString" : "CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 6.9 ,
"baseSeverity" : "MEDIUM" ,
2024-07-14 02:06:08 +00:00
"attackVector" : "NETWORK" ,
"attackComplexity" : "LOW" ,
"attackRequirements" : "NONE" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "NONE" ,
2025-03-02 03:03:52 +00:00
"vulnConfidentialityImpact" : "NONE" ,
"vulnIntegrityImpact" : "NONE" ,
"vulnAvailabilityImpact" : "NONE" ,
"subConfidentialityImpact" : "NONE" ,
"subIntegrityImpact" : "LOW" ,
"subAvailabilityImpact" : "NONE" ,
2024-07-14 02:06:08 +00:00
"exploitMaturity" : "NOT_DEFINED" ,
2025-03-02 03:03:52 +00:00
"confidentialityRequirement" : "NOT_DEFINED" ,
"integrityRequirement" : "NOT_DEFINED" ,
"availabilityRequirement" : "NOT_DEFINED" ,
2024-07-14 02:06:08 +00:00
"modifiedAttackVector" : "NOT_DEFINED" ,
"modifiedAttackComplexity" : "NOT_DEFINED" ,
"modifiedAttackRequirements" : "NOT_DEFINED" ,
"modifiedPrivilegesRequired" : "NOT_DEFINED" ,
"modifiedUserInteraction" : "NOT_DEFINED" ,
2025-03-02 03:03:52 +00:00
"modifiedVulnConfidentialityImpact" : "NOT_DEFINED" ,
"modifiedVulnIntegrityImpact" : "NOT_DEFINED" ,
"modifiedVulnAvailabilityImpact" : "NOT_DEFINED" ,
"modifiedSubConfidentialityImpact" : "NOT_DEFINED" ,
"modifiedSubIntegrityImpact" : "NOT_DEFINED" ,
"modifiedSubAvailabilityImpact" : "NOT_DEFINED" ,
"Safety" : "NOT_DEFINED" ,
"Automatable" : "NOT_DEFINED" ,
"Recovery" : "NOT_DEFINED" ,
2024-07-14 02:06:08 +00:00
"valueDensity" : "NOT_DEFINED" ,
"vulnerabilityResponseEffort" : "NOT_DEFINED" ,
2024-12-08 03:06:42 +00:00
"providerUrgency" : "NOT_DEFINED"
2024-07-14 02:06:08 +00:00
}
}
] ,
2024-04-12 16:03:28 +00:00
"cvssMetricV31" : [
{
"source" : "sirt@juniper.net" ,
2025-03-09 03:03:50 +00:00
"type" : "Primary" ,
2024-04-12 16:03:28 +00:00
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:L/A:N" ,
2024-12-08 03:06:42 +00:00
"baseScore" : 5.8 ,
"baseSeverity" : "MEDIUM" ,
2024-04-12 16:03:28 +00:00
"attackVector" : "NETWORK" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "NONE" ,
"scope" : "CHANGED" ,
"confidentialityImpact" : "NONE" ,
"integrityImpact" : "LOW" ,
2024-12-08 03:06:42 +00:00
"availabilityImpact" : "NONE"
2024-04-12 16:03:28 +00:00
} ,
"exploitabilityScore" : 3.9 ,
"impactScore" : 1.4
}
]
} ,
"weaknesses" : [
{
"source" : "sirt@juniper.net" ,
"type" : "Secondary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-696"
}
]
2025-02-06 19:03:49 +00:00
} ,
{
"source" : "nvd@nist.gov" ,
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "NVD-CWE-Other"
}
]
}
] ,
"configurations" : [
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "20.4" ,
"matchCriteriaId" : "E3A96966-5060-4139-A124-D4E2C879FD6C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:-:*:*:*:*:*:*" ,
"matchCriteriaId" : "3D361B23-A3C2-444B-BEB8-E231DA950567"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r1:*:*:*:*:*:*" ,
"matchCriteriaId" : "20DDC6B7-BFC4-4F0B-8E68-442C23765BF2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r1-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "037BA01C-3F5C-4503-A633-71765E9EF774"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r2:*:*:*:*:*:*" ,
"matchCriteriaId" : "C54B047C-4B38-40C0-9855-067DCF7E48BD"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r2-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "38984199-E332-4A9C-A4C0-78083D052E15"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r2-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "AA6526FB-2941-4D18-9B2E-472AD5A62A53"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3:*:*:*:*:*:*" ,
"matchCriteriaId" : "09876787-A40A-4340-9C12-8628C325353B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "41615104-C17E-44DA-AB0D-6E2053BD4EF4"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "1981DE38-36B5-469D-917E-92717EE3ED53"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3-s3:*:*:*:*:*:*" ,
"matchCriteriaId" : "AFA68ACD-AAE5-4577-B734-23AAF77BC85A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3-s4:*:*:*:*:*:*" ,
"matchCriteriaId" : "65948ABC-22BB-46D5-8545-0806EDB4B86E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3-s5:*:*:*:*:*:*" ,
"matchCriteriaId" : "283E41CB-9A90-4521-96DC-F31AA592CFD8"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3-s6:*:*:*:*:*:*" ,
"matchCriteriaId" : "14EEA504-CBC5-4F6F-889A-D505EC4BB5B1"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3-s7:*:*:*:*:*:*" ,
"matchCriteriaId" : "977DEF80-0DB5-4828-97AC-09BB3111D585"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3-s8:*:*:*:*:*:*" ,
"matchCriteriaId" : "C445622E-8E57-4990-A71A-E1993BFCB91A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3-s9:*:*:*:*:*:*" ,
"matchCriteriaId" : "0CED6FFE-1854-4BB0-8DB5-D2D756E68CAC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:-:*:*:*:*:*:*" ,
"matchCriteriaId" : "216E7DDE-453D-481F-92E2-9F8466CDDA3F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r1:*:*:*:*:*:*" ,
"matchCriteriaId" : "A52AF794-B36B-43A6-82E9-628658624B0A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r1-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "3998DC76-F72F-4452-9150-652140B113EB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r1-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "36ED4552-2420-45F9-B6E4-6DA2B2B12870"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r2:*:*:*:*:*:*" ,
"matchCriteriaId" : "C28A14E7-7EA0-4757-9764-E39A27CFDFA5"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r2-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "4A43752D-A4AF-4B4E-B95B-192E42883A5B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r2-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "42986538-E9D0-4C2E-B1C4-A763A4EE451B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r3:*:*:*:*:*:*" ,
"matchCriteriaId" : "DE22CA01-EA7E-4EE5-B59F-EE100688C1DA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r3-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "E596ABD9-6ECD-48DC-B770-87B7E62EA345"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r3-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "71745D02-D226-44DC-91AD-678C85F5E6FC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r3-s3:*:*:*:*:*:*" ,
"matchCriteriaId" : "39E44B09-7310-428C-8144-AE9DB0484D1F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r3-s4:*:*:*:*:*:*" ,
"matchCriteriaId" : "53938295-8999-4316-9DED-88E24D037852"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r3-s5:*:*:*:*:*:*" ,
"matchCriteriaId" : "2307BF56-640F-49A8-B060-6ACB0F653A61"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r3-s6:*:*:*:*:*:*" ,
"matchCriteriaId" : "737DDF96-7B1D-44E2-AD0F-E2F50858B2A3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r1:*:*:*:*:*:*" ,
"matchCriteriaId" : "4310D2D9-A8A6-48F8-9384-0A0692A1E1C3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r1-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "9962B01C-C57C-4359-9532-676AB81CE8B0"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r1-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "62178549-B679-4902-BFDB-2993803B7FCE"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r2:*:*:*:*:*:*" ,
"matchCriteriaId" : "9AD697DF-9738-4276-94ED-7B9380CD09F5"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r2-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "09FF5818-0803-4646-A386-D7C645EE58A3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r2-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "2229FA59-EB24-49A2-85CE-F529A8DE6BA7"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r3:*:*:*:*:*:*" ,
"matchCriteriaId" : "0CB280D8-C5D8-4B51-A879-496ACCDE4538"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r3-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "5F3F54F1-75B3-400D-A735-2C27C8CEBE79"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r3-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "476A49E7-37E9-40F9-BF2D-9BBFFAA1DFFC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r3-s3:*:*:*:*:*:*" ,
"matchCriteriaId" : "0A5B196A-2AF1-4AE5-9148-A75A572807BC"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r3-s4:*:*:*:*:*:*" ,
"matchCriteriaId" : "3B457616-2D91-4913-9A7D-038BBF8F1F66"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r3-s5:*:*:*:*:*:*" ,
"matchCriteriaId" : "C470FB4E-A927-4AF3-ACB0-AD1E264218B7"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "E594D6DC-87F6-40D2-8268-ED6021462168"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-24p:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "7BEA4BC3-093F-4DE6-BED1-2C7D2FC2C8A5"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-24p-s:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "592377CC-4044-4FDD-A3DF-CBF25754EE4D"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-24t:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D12E8275-EF6B-44F9-A7D8-A769CDB5EED5"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-24t-s:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "D3E63215-246E-49F3-A537-8A90D512DAB0"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-32f:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "AD1A5E69-928A-41A0-8B9B-91F307D99854"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-32f-dc:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "2B71953D-016D-4E72-B598-55667A507681"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-32f-s:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "CABBC37B-EB93-424D-A1E7-4686039C0955"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-48mp:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "24526B69-E3E3-4249-80A4-A886BED5C07E"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-48mp-s:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "B2209605-65B6-44B3-9700-9EC543BF2408"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-48p:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "C3C348CF-65C1-4A53-8F4F-99B5A4113679"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-48p-s:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "60CB5F91-DC40-4D09-BB93-4539B8581877"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-48t:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "ADE8EB69-95DD-44E9-80A6-F2B5E34BBD5B"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-48t-afi:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "EEEDB14F-E74A-4C48-A969-1D22D7F7C7C8"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-48t-dc:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "CBE3866E-109E-479F-9FFE-3F6E81C0DE7C"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-48t-dc-afi:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "8A17D793-5F01-4818-956D-D6BC5A6C4CEE"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:ex4300-48t-s:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "EF4C3E8E-C8B4-42A5-8DB6-7E8114FCC030"
}
]
}
]
2024-04-12 16:03:28 +00:00
}
] ,
"references" : [
{
"url" : "https://supportportal.juniper.net/JSA79100" ,
2025-02-06 19:03:49 +00:00
"source" : "sirt@juniper.net" ,
"tags" : [
"Vendor Advisory"
]
2024-04-12 16:03:28 +00:00
} ,
{
"url" : "https://www.first.org/cvss/calculator/4.0#CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:N/SI:L/SA:N" ,
2025-02-06 19:03:49 +00:00
"source" : "sirt@juniper.net" ,
"tags" : [
"Issue Tracking"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://supportportal.juniper.net/JSA79100" ,
2025-02-06 19:03:49 +00:00
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Vendor Advisory"
]
2024-12-08 03:06:42 +00:00
} ,
{
"url" : "https://www.first.org/cvss/calculator/4.0#CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:N/SI:L/SA:N" ,
2025-02-06 19:03:49 +00:00
"source" : "af854a3a-2127-422b-91ae-364da2661108" ,
"tags" : [
"Issue Tracking"
]
2024-04-12 16:03:28 +00:00
}
]
}