CVE-2019-0064
On SRX5000 Series devices, if 'set security zones security-zone <zone> tcp-rst' is configured, the flowd process may crash when a specific TCP packet is received by the device and triggers a new session. The process restarts automatically. However, receipt of a constant stream of these TCP packets may result in an extended Denial of Service (DoS) condition on the device. This issue affects Juniper Networks Junos OS: 18.2R3 on SRX 5000 Series; 18.4R2 on SRX 5000 Series; 19.2R1 on SRX 5000 Series.
Published:Oct 9, 2019
Last Modified:Nov 21, 2024
EPS:Oct 9, 2019
EPSS Score:0.00389
CVSS Score:7.5
Affected Products
Vendor
Product
Action
Vendor
Juniper
Product
Junos
Juniper
Junos
Vendor
Juniper
Product
Srx5400
Juniper
Srx5400
Vendor
Juniper
Product
Srx5600
Juniper
Srx5600
Vendor
Juniper
Product
Srx5800
Juniper
Srx5800
Exploits
No exploit reference
Common Weakness Enumeration
No CWE recorded yet
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
