mirror of
https://github.com/fkie-cad/nvd-json-data-feeds.git
synced 2025-05-28 09:11:28 +00:00
325 lines
12 KiB
JSON
325 lines
12 KiB
JSON
{
|
|
"id": "CVE-2023-28985",
|
|
"sourceIdentifier": "sirt@juniper.net",
|
|
"published": "2023-07-14T17:15:09.050",
|
|
"lastModified": "2024-11-21T07:56:20.603",
|
|
"vulnStatus": "Modified",
|
|
"cveTags": [],
|
|
"descriptions": [
|
|
{
|
|
"lang": "en",
|
|
"value": "An Improper Validation of Syntactic Correctness of Input vulnerability in Intrusion Detection and Prevention (IDP) of Juniper Networks SRX Series and MX Series allows an unauthenticated, network-based attacker to cause Denial of Service (DoS). Continued receipt of this specific packet will cause a sustained Denial of Service condition.\n\nOn all SRX Series and MX Series platforms, where IDP is enabled and a specific malformed SSL packet is received, the SSL detector crashes leading to an FPC core.\n\nThis issue affects Juniper Networks SRX Series and MX Series prior to SigPack 3598.\n\nIn order to identify the current SigPack version, following command can be used:\n\nuser@junos# show security idp security-package-version"
|
|
}
|
|
],
|
|
"metrics": {
|
|
"cvssMetricV31": [
|
|
{
|
|
"source": "sirt@juniper.net",
|
|
"type": "Primary",
|
|
"cvssData": {
|
|
"version": "3.1",
|
|
"vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H",
|
|
"baseScore": 7.5,
|
|
"baseSeverity": "HIGH",
|
|
"attackVector": "NETWORK",
|
|
"attackComplexity": "LOW",
|
|
"privilegesRequired": "NONE",
|
|
"userInteraction": "NONE",
|
|
"scope": "UNCHANGED",
|
|
"confidentialityImpact": "NONE",
|
|
"integrityImpact": "NONE",
|
|
"availabilityImpact": "HIGH"
|
|
},
|
|
"exploitabilityScore": 3.9,
|
|
"impactScore": 3.6
|
|
}
|
|
]
|
|
},
|
|
"weaknesses": [
|
|
{
|
|
"source": "sirt@juniper.net",
|
|
"type": "Primary",
|
|
"description": [
|
|
{
|
|
"lang": "en",
|
|
"value": "CWE-1286"
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"configurations": [
|
|
{
|
|
"operator": "AND",
|
|
"nodes": [
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": true,
|
|
"criteria": "cpe:2.3:o:juniper:junos:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "432CAEBA-3386-4FC5-8416-4277114500F1"
|
|
}
|
|
]
|
|
},
|
|
{
|
|
"operator": "OR",
|
|
"negate": false,
|
|
"cpeMatch": [
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:a:juniper:vsrx:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "36F68E75-E6C6-4DB4-AE0E-C5637ECE7C88"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:csrx:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "11D4A86D-BDB4-4A01-96FE-7E023C58074B"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx10:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "52699E2B-450A-431C-81E3-DC4483C8B4F2"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx10000:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D97AF6F8-3D50-4D35-BCB1-54E3BEC69B9F"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx10003:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D5627740-42E3-4FB1-B8B9-0B768AFFA1EC"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx10008:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "D6F0EA2F-BF7E-45D0-B2B4-8A7B67A9475A"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx10016:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C39DA74D-F5C7-4C11-857D-50631A110644"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx104:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F72C850A-0530-4DB7-A553-7E19F82122B5"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx150:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "7FE2089C-F341-4DC1-B76D-633BC699306D"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx2008:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2FEF33EB-B2E0-42EF-A1BB-D41021B6D08F"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx2010:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "27175D9A-CA2C-4218-8042-835E25DFCA43"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx2020:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "00C7FC57-8ACF-45AA-A227-7E3B350FD24F"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx204:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2754C2DF-DF6E-4109-9463-38B4E0465B77"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx240:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "F4A26704-A6A4-4C4F-9E12-A0A0259491EF"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx40:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "C982A2FF-A1F9-4830-BAB6-77CFCE1F093F"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx480:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "104858BD-D31D-40E0-8524-2EC311F10EAC"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx5:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3B557965-0040-4048-B56C-F564FF28635B"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx80:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "EB875EBD-A3CD-4466-B2A3-39D47FF94592"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:mx960:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "B5E08E1E-0FE4-4294-9497-BBFFECA2A220"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx100:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "561C1113-3D59-4DD9-ADA7-3C9ECC4632EC"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx110:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "78C6D8A0-92D3-4FD3-BCC1-CC7C87B76317"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx1400:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "927EAB8B-EC3B-4B12-85B9-5517EBA49A30"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx1500:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2CEBF85C-736A-4E7D-956A-3E8210D4F70B"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx210:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "CD647C15-A686-4C8F-A766-BC29404C0FED"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx220:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "45AB1622-1AED-4CD7-98F1-67779CDFC321"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx240:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "89276D88-3B8D-4168-A2CD-0920297485F2"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx240h2:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "E020556B-693F-4963-BA43-3164AB50FA49"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx240m:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "AB0D31FF-0812-42B8-B25E-03C35EC1B021"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx300:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "BB5AB24B-2B43-43DD-AE10-F758B4B19F2A"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx320:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "80F9DC32-5ADF-4430-B1A6-357D0B29DB78"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx340:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8B82D4C4-7A65-409A-926F-33C054DCBFBA"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx3400:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "746C3882-2A5B-4215-B259-EB1FD60C513D"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx345:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "CE535749-F4CE-4FFA-B23D-BF09C92481E5"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx3600:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "DDE64EC0-7E42-43AF-A8FA-1A233BD3E3BC"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx380:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2305DA9D-E6BA-48F4-80CF-9E2DE7661B2F"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx4000:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "06A03463-6B1D-4DBA-9E89-CAD5E899B98B"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx4100:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "3AA8999C-8AE4-416F-BA2A-B1A21F33B4D7"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx4200:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "CCC5F6F5-4347-49D3-909A-27A3A96D36C9"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx4600:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "56BA6B86-D3F4-4496-AE46-AC513C6560FA"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx5000:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "5ABA347C-3EF3-4F75-B4D1-54590A57C2BC"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx5400:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "2FDDC897-747F-44DD-9599-7266F9B5B7B1"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx550:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "62FC145A-D477-4C86-89E7-F70F52773801"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx550_hm:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "06685D0E-A075-49A5-9EF4-34F0F795C8C6"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx550m:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "52F0B735-8C49-4B08-950A-296C9CDE43CA"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx5600:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "68CA098D-CBE4-4E62-9EC0-43E1B6098710"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx5800:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "66F474D4-79B6-4525-983C-9A9011BD958B"
|
|
},
|
|
{
|
|
"vulnerable": false,
|
|
"criteria": "cpe:2.3:h:juniper:srx650:-:*:*:*:*:*:*:*",
|
|
"matchCriteriaId": "8AA424D4-4DBF-4E8C-96B8-E37741B5403E"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
}
|
|
],
|
|
"references": [
|
|
{
|
|
"url": "https://supportportal.juniper.net/JSA71662",
|
|
"source": "sirt@juniper.net",
|
|
"tags": [
|
|
"Vendor Advisory"
|
|
]
|
|
},
|
|
{
|
|
"url": "https://supportportal.juniper.net/JSA71662",
|
|
"source": "af854a3a-2127-422b-91ae-364da2661108",
|
|
"tags": [
|
|
"Vendor Advisory"
|
|
]
|
|
}
|
|
]
|
|
} |