CVE Feed

    Dashboard / CVE / CVE-2021-0280

    CVE-2021-0280

    Due to an Improper Initialization vulnerability in Juniper Networks Junos OS on PTX platforms and QFX10K Series with Paradise (PE) chipset-based line cards, ddos-protection configuration changes made from the CLI will not take effect as expected beyond the default DDoS (Distributed Denial of Service) settings in the Packet Forwarding Engine (PFE). This may cause BFD sessions to flap when a high rate of specific packets are received. Flapping of BFD sessions in turn may impact routing protocols and network stability, leading to a Denial of Service (DoS) condition. Continued receipt and processing of this packet will create a sustained Denial of Service (DoS) condition. This issue affects only the following platforms with Paradise (PE) chipset-based line cards: PTX1000, PTX3000 (NextGen), PTX5000, PTX10008, PTX10016 Series and QFX10002 Series. This issue affects: Juniper Networks Junos OS 17.4 versions prior to 17.4R3-S5 on PTX Series, QFX10K Series; 18.2 versions prior to 18.2R3-S8 on PTX Series, QFX10K Series; 18.3 versions prior to 18.3R3-S5 on PTX Series, QFX10K Series; 18.4 versions prior to 18.4R2-S8 on PTX Series, QFX10K Series; 19.1 versions prior to 19.1R3-S5 on PTX Series, QFX10K Series; 19.2 versions prior to 19.2R3-S2 on PTX Series, QFX10K Series; 19.3 versions prior to 19.3R3-S2 on PTX Series, QFX10K Series; 19.4 versions prior to 19.4R3-S2 on PTX Series, QFX10K Series; 20.1 versions prior to 20.1R3 on PTX Series, QFX10K Series; 20.2 versions prior to 20.2R2-S3, 20.2R3 on PTX Series, QFX10K Series; 20.3 versions prior to 20.3R2 on PTX Series, QFX10K Series; 20.4 versions prior to 20.4R2 on PTX Series, QFX10K Series.

    Published:Jul 15, 2021
    Last Modified:Nov 21, 2024
    EPS:Jul 15, 2021
    EPSS Score:0.00389
    CVSS Score:7.5

    Affected Products

    Vendor
    Juniper
    Product
    Junos
    Vendor
    Juniper
    Product
    Ptx1000
    Vendor
    Juniper
    Product
    Ptx1000-72q
    Vendor
    Juniper
    Product
    Ptx10000
    Vendor
    Juniper
    Product
    Ptx10001
    Vendor
    Juniper
    Product
    Ptx10001-36mr
    Vendor
    Juniper
    Product
    Ptx100016
    Vendor
    Juniper
    Product
    Ptx10002
    Vendor
    Juniper
    Product
    Ptx10002-60c
    Vendor
    Juniper
    Product
    Ptx10003
    Vendor
    Juniper
    Product
    Ptx10003 160c
    Vendor
    Juniper
    Product
    Ptx10003 80c
    Vendor
    Juniper
    Product
    Ptx10003 81cd
    Vendor
    Juniper
    Product
    Ptx10004
    Vendor
    Juniper
    Product
    Ptx10008
    Vendor
    Juniper
    Product
    Ptx10016
    Vendor
    Juniper
    Product
    Ptx3000
    Vendor
    Juniper
    Product
    Ptx5000
    Vendor
    Juniper
    Product
    Qfx10000
    Vendor
    Juniper
    Product
    Qfx10002
    Vendor
    Juniper
    Product
    Qfx10002-32q
    Vendor
    Juniper
    Product
    Qfx10002-60c
    Vendor
    Juniper
    Product
    Qfx10002-72q
    Vendor
    Juniper
    Product
    Qfx10008
    Vendor
    Juniper
    Product
    Qfx10016

    Exploits

    No exploit reference

    Common Weakness Enumeration

    Related CVEs

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High