mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-07-29 05:56:17 +00:00
374 lines
14 KiB
JSON
374 lines
14 KiB
JSON
{
|
|
"id": "CVE-2016-1277",
|
|
"sourceIdentifier": "cve@mitre.org",
|
|
"published": "2016-09-09T14:05:04.063",
|
|
"lastModified": "2017-09-01T01:29:02.710",
|
|
"vulnStatus": "Modified",
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "Juniper Junos OS before 12.1X46-D50, 12.1X47 before 12.1X47-D40, 12.3X48 before 12.3X48-D30, 13.3 before 13.3R9, 14.1 before 14.1R8, 14.1X53 before 14.1X53-D40, 14.2 before 14.2R6, 15.1 before 15.1F6 or 15.1R3, and 15.1X49 before 15.1X49-D40, when configured with a GRE or IPIP tunnel, allow remote attackers to cause a denial of service (kernel panic) via a crafted ICMP packet."
|
|
},
|
|
{
|
|
"lang": "es",
|
|
"value": "Juniper Junos OS en versiones anteriores a 12.1X46-D50, 12.1X47 en versiones anteriores a 12.1X47-D40, 12.3X48 en versiones anteriores a 12.3X48-D30, 13.3 en versiones anteriores a 13.3R9, 14.1 en versiones anteriores a 14.1R8, 14.1X53 en versiones anteriores a 14.1X53-D40, 14.2 en versiones anteriores a 14.2R6, 15.1 en versiones anteriores a 15.1F6 o 15.1R3 y 15.1X49 en versiones anteriores a 15.1X49-D40, cuando es configurado con un tunel GRE o IPIP, permiten a atacantes remotos provocar una denegaci\u00f3n de servicio (p\u00e1nico en el kernel) a trav\u00e9s de un paquete ICMP manipulado."
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV30": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "3.0",
|
|
"vectorString": "CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H",
|
|
"attackVector": "NETWORK",
|
|
"attackComplexity": "HIGH",
|
|
"privilegesRequired": "NONE",
|
|
"userInteraction": "NONE",
|
|
"scope": "UNCHANGED",
|
|
"confidentialityImpact": "NONE",
|
|
"integrityImpact": "NONE",
|
|
"availabilityImpact": "HIGH",
|
|
"baseScore": 5.9,
|
|
"baseSeverity": "MEDIUM"
|
|
},
|
|
"exploitabilityScore": 2.2,
|
|
"impactScore": 3.6
|
|
}
|
|
],
|
|
"cvssMetricV2": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "2.0",
|
|
"vectorString": "AV:N/AC:M/Au:N/C:N/I:N/A:C",
|
|
"accessVector": "NETWORK",
|
|
"accessComplexity": "MEDIUM",
|
|
"authentication": "NONE",
|
|
"confidentialityImpact": "NONE",
|
|
"integrityImpact": "NONE",
|
|
"availabilityImpact": "COMPLETE",
|
|
"baseScore": 7.1
|
|
},
|
|
"baseSeverity": "HIGH",
|
|
"exploitabilityScore": 8.6,
|
|
"impactScore": 6.9,
|
|
"acInsufInfo": false,
|
|
"obtainAllPrivilege": false,
|
|
"obtainUserPrivilege": false,
|
|
"obtainOtherPrivilege": false,
|
|
"userInteractionRequired": false
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "nvd@nist.gov",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-20"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:*:d45:*:*:*:*:*:*",
|
|
"versionEndIncluding": "12.1x46",
|
|
"matchCriteriaId": "CE3C59EA-3089-4693-980B-46969B38DFD1"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:12.1x47:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0BB3DE56-1B04-4A53-B4A4-93286FC98463"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:12.1x47:d10:*:*:*:*:*:*",
|
|
"matchCriteriaId": "181C0D30-4476-48EE-A4A4-3B2461F4AC20"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:12.1x47:d15:*:*:*:*:*:*",
|
|
"matchCriteriaId": "63F559A2-2744-4771-9420-C70AA87496A2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:12.1x47:d20:*:*:*:*:*:*",
|
|
"matchCriteriaId": "040A6307-236E-4FAA-9A74-676F1DB0CF17"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:12.1x47:d25:*:*:*:*:*:*",
|
|
"matchCriteriaId": "350A0F1E-1057-4A8E-AB0B-7615B3877858"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:12.1x47:d30:*:*:*:*:*:*",
|
|
"matchCriteriaId": "898DF03B-0E72-4E9A-8C93-926FC01A87DF"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:12.1x47:d35:*:*:*:*:*:*",
|
|
"matchCriteriaId": "FEE85C83-E6FC-42DE-9857-A1FFA3A1B82A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:12.3x48:d10:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4B7066A4-CD05-4E1A-89E8-71B4CB92CFF3"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:12.3x48:d15:*:*:*:*:*:*",
|
|
"matchCriteriaId": "A4AC2E1E-74FB-4DA3-8292-B2079F83FF54"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:12.3x48:d25:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6E296274-AFC1-4F56-A4B3-827C2E0BC9D5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:13.3:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E4AF5DAA-62F5-491F-A9CE-098970671D43"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:13.3:r1:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3FF9FF91-9184-4D18-8288-9110E35F4AE5"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:13.3:r2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0F2E537B-9504-4912-B231-0D83F4459469"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:13.3:r2-s2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "99A946CE-FFC7-4F16-82F4-795A6E5B84C2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:13.3:r3:*:*:*:*:*:*",
|
|
"matchCriteriaId": "4BCB3837-DCBC-4997-B63E-E47957584709"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:13.3:r4:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6C88E2B1-469B-442B-9FC0-7C9408CE3917"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:13.3:r5:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1FB5A368-E582-4DFD-87B4-C887DA908E47"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:13.3:r6:*:*:*:*:*:*",
|
|
"matchCriteriaId": "70ED0B93-2CFC-474F-B199-F78E1C67E8C7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:13.3:r7:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B8D270B6-1681-4EC5-9BC2-1312A50C8E09"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:13.3:r8:*:*:*:*:*:*",
|
|
"matchCriteriaId": "41DB14FA-0D58-4AE4-9324-310290F1F0F1"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "6237291A-B861-4D53-B7AA-C53A44B76896"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1:r1:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9C778627-820A-48F5-9680-0205D6DB5EB6"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1:r2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "FA7F03DC-73A2-4760-B386-2A57E9C97E65"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1:r3:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0CA10003-D52B-4110-9D7A-F50895E6BA17"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1:r4:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1B2D843A-8ADE-4888-8960-B48394DEA1D2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1:r5:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3BE66516-A06D-4C0F-8346-DFC8865C8FE8"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1:r6:*:*:*:*:*:*",
|
|
"matchCriteriaId": "EEBDFC9E-7753-42A8-A5C8-4D40D219F93A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1:r7:*:*:*:*:*:*",
|
|
"matchCriteriaId": "25E5D543-D779-482D-AA8A-6E77C1949FBD"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1x53:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "9C7FCCC1-B151-465A-8327-26DB5DC074F0"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1x53:d10:*:*:*:*:*:*",
|
|
"matchCriteriaId": "09771B8F-8B2A-4E8B-B4D3-80677697FCF3"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1x53:d15:*:*:*:*:*:*",
|
|
"matchCriteriaId": "55E2F909-E1CC-45AA-ABA9-58178B751808"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1x53:d16:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E1AA12C5-4520-4F79-80BE-66112F7AFC2A"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1x53:d25:*:*:*:*:*:*",
|
|
"matchCriteriaId": "807C8110-5CC2-45F0-B094-BBF9C0B63BDD"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1x53:d26:*:*:*:*:*:*",
|
|
"matchCriteriaId": "547E5737-D385-49B9-A69F-A3B185A34116"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1x53:d27:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2ED257ED-A56B-48A6-8568-65F36FFFC753"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1x53:d30:*:*:*:*:*:*",
|
|
"matchCriteriaId": "74500FC7-EE82-4AA8-9A5F-15DE4835E337"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.1x53:d35:*:*:*:*:*:*",
|
|
"matchCriteriaId": "AAE14AE1-6756-4831-A8D5-A6D07DB24AF2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.2:r1:*:*:*:*:*:*",
|
|
"matchCriteriaId": "79149AA0-17D1-4522-894F-C025F7A30FD7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.2:r2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "30726286-7CB1-4E5D-AE44-2B4D84795900"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.2:r3:*:*:*:*:*:*",
|
|
"matchCriteriaId": "33BE028F-2961-414A-9D42-C4861566C2DC"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.2:r4:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E85AB30C-03FC-44DB-A8AA-B916A905CA66"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:14.2:r5:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D01CA25F-E1E1-4831-8561-D3B0300BF4A7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:15.1:f2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "1C56E6C3-BBB6-4853-91D9-99C7676D0CD4"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:15.1:f3:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0E0ECBD8-3D66-49DA-A557-5695159F0C06"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:15.1:f4:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0EAA2998-A0D6-4818-9E7C-25E8099403E7"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:15.1:f5:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2D4ADFC5-D4B8-4A68-95D8-8ADF92C1CFE8"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:15.1:r1:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D0D3EA8F-4D30-4383-AF2F-0FB6D822D0F3"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:15.1:r2:*:*:*:*:*:*",
|
|
"matchCriteriaId": "0E6CD065-EC06-4846-BD2A-D3CA7866070F"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:15.1:r3:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C7620D01-1A6B-490F-857E-0D803E0AEE56"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:15.1x49:d10:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D90D8985-34EF-44CC-A9A7-CB0FD22676F2"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:15.1x49:d20:*:*:*:*:*:*",
|
|
"matchCriteriaId": "18468579-0195-4DDE-BAA5-4BE4068F3A69"
|
|
},
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:15.1x49:d35:*:*:*:*:*:*",
|
|
"matchCriteriaId": "870244F3-1C05-4F10-A205-5189BB860F46"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10752",
|
|
"source": "cve@mitre.org",
|
|
"tags": [
|
|
"Mitigation",
|
|
"Vendor Advisory"
|
|
]
|
|
},
|
|
{
|
|
"url": "http://www.securityfocus.com/bid/91755",
|
|
"source": "cve@mitre.org"
|
|
},
|
|
{
|
|
"url": "http://www.securitytracker.com/id/1036306",
|
|
"source": "cve@mitre.org"
|
|
}
|
|
]
|
|
} |