Total vulnerabilities in the database
An Unsupported Feature in the UI vulnerability in Juniper Networks Junos OS on MX Series and EX9200 Series allows an unauthenticated, network-based attacker to cause partial impact to the integrity of the device.
If the "tcp-reset" option is added to the "reject" action in an IPv6 filter which matches on "payload-protocol", packets are permitted instead of rejected. This happens because the payload-protocol match criteria is not supported in the kernel filter causing it to accept all packets without taking any other action. As a fix the payload-protocol match will be treated the same as a "next-header" match to avoid this filter bypass.
This issue doesn't affect IPv4 firewall filters.
This issue affects Juniper Networks Junos OS on MX Series and EX9200 Series:
Software | From | Fixed in |
---|---|---|
juniper / junos | - | 20.4 |
juniper / junos | 20.4-r3-s5 | 20.4-r3-s5.x |
juniper / junos | 20.4-r3-s6 | 20.4-r3-s6.x |
juniper / junos | 20.4-r3-s4 | 20.4-r3-s4.x |
juniper / junos | 20.4-r1 | 20.4-r1.x |
juniper / junos | 20.4-r1-s1 | 20.4-r1-s1.x |
juniper / junos | 20.4-r2 | 20.4-r2.x |
juniper / junos | 20.4-r2-s1 | 20.4-r2-s1.x |
juniper / junos | 20.4-r3 | 20.4-r3.x |
juniper / junos | 20.4-r3-s1 | 20.4-r3-s1.x |
juniper / junos | 20.4-r2-s2 | 20.4-r2-s2.x |
juniper / junos | 20.4 | 20.4.x |
juniper / junos | 20.4-r3-s2 | 20.4-r3-s2.x |
juniper / junos | 20.4-r3-s3 | 20.4-r3-s3.x |
juniper / junos | 21.1-r3-s1 | 21.1-r3-s1.x |
juniper / junos | 21.1-r2 | 21.1-r2.x |
juniper / junos | 21.1-r2-s2 | 21.1-r2-s2.x |
juniper / junos | 21.1-r3 | 21.1-r3.x |
juniper / junos | 21.1-r2-s1 | 21.1-r2-s1.x |
juniper / junos | 21.1-r1-s1 | 21.1-r1-s1.x |
juniper / junos | 21.1-r1 | 21.1-r1.x |
juniper / junos | 21.1-r3-s3 | 21.1-r3-s3.x |
juniper / junos | 21.1-r3-s4 | 21.1-r3-s4.x |
juniper / junos | 21.1 | 21.1.x |
juniper / junos | 21.1-r3-s2 | 21.1-r3-s2.x |
juniper / junos | 21.2-r3-s2 | 21.2-r3-s2.x |
juniper / junos | 21.2-r3-s1 | 21.2-r3-s1.x |
juniper / junos | 21.2-r3-s4 | 21.2-r3-s4.x |
juniper / junos | 21.2-r3-s3 | 21.2-r3-s3.x |
juniper / junos | 21.2-r1 | 21.2-r1.x |
juniper / junos | 21.2-r1-s1 | 21.2-r1-s1.x |
juniper / junos | 21.2 | 21.2.x |
juniper / junos | 21.2-r1-s2 | 21.2-r1-s2.x |
juniper / junos | 21.2-r2-s1 | 21.2-r2-s1.x |
juniper / junos | 21.2-r2-s2 | 21.2-r2-s2.x |
juniper / junos | 21.2-r2 | 21.2-r2.x |
juniper / junos | 21.2-r3 | 21.2-r3.x |
juniper / junos | 21.3-r1-s1 | 21.3-r1-s1.x |
juniper / junos | 21.3-r1-s2 | 21.3-r1-s2.x |
juniper / junos | 21.3-r2-s1 | 21.3-r2-s1.x |
juniper / junos | 21.3-r2-s2 | 21.3-r2-s2.x |
juniper / junos | 21.3-r3 | 21.3-r3.x |
juniper / junos | 21.3-r3-s1 | 21.3-r3-s1.x |
juniper / junos | 21.3-r1 | 21.3-r1.x |
juniper / junos | 21.3-r2 | 21.3-r2.x |
juniper / junos | 21.3-r3-s3 | 21.3-r3-s3.x |
juniper / junos | 21.3-r3-s2 | 21.3-r3-s2.x |
juniper / junos | 21.3 | 21.3.x |
juniper / junos | 21.4-r3 | 21.4-r3.x |
juniper / junos | 21.4-r2-s2 | 21.4-r2-s2.x |
juniper / junos | 21.4-r3-s2 | 21.4-r3-s2.x |
juniper / junos | 21.4-r3-s1 | 21.4-r3-s1.x |
juniper / junos | 21.4-r3-s3 | 21.4-r3-s3.x |
juniper / junos | 21.4-r1-s1 | 21.4-r1-s1.x |
juniper / junos | 21.4-r2 | 21.4-r2.x |
juniper / junos | 21.4-r2-s1 | 21.4-r2-s1.x |
juniper / junos | 21.4-r1-s2 | 21.4-r1-s2.x |
juniper / junos | 21.4 | 21.4.x |
juniper / junos | 21.4-r1 | 21.4-r1.x |
juniper / junos | 22.1-r1 | 22.1-r1.x |
juniper / junos | 22.1-r3-s1 | 22.1-r3-s1.x |
juniper / junos | 22.1-r3 | 22.1-r3.x |
juniper / junos | 22.1-r1-s2 | 22.1-r1-s2.x |
juniper / junos | 22.1-r2-s2 | 22.1-r2-s2.x |
juniper / junos | 22.1-r1-s1 | 22.1-r1-s1.x |
juniper / junos | 22.1-r2 | 22.1-r2.x |
juniper / junos | 22.1 | 22.1.x |
juniper / junos | 22.1-r2-s1 | 22.1-r2-s1.x |
juniper / junos | 22.2-r3-s1 | 22.2-r3-s1.x |
juniper / junos | 22.2 | 22.2.x |
juniper / junos | 22.2-r1 | 22.2-r1.x |
juniper / junos | 22.2-r1-s1 | 22.2-r1-s1.x |
juniper / junos | 22.2-r2 | 22.2-r2.x |
juniper / junos | 22.2-r1-s2 | 22.2-r1-s2.x |
juniper / junos | 22.2-r2-s1 | 22.2-r2-s1.x |
juniper / junos | 22.2-r2-s2 | 22.2-r2-s2.x |
juniper / junos | 22.2-r3 | 22.2-r3.x |
juniper / junos | 22.3-r1-s2 | 22.3-r1-s2.x |
juniper / junos | 22.3-r2-s1 | 22.3-r2-s1.x |
juniper / junos | 22.3-r1-s1 | 22.3-r1-s1.x |
juniper / junos | 22.3-r2 | 22.3-r2.x |
juniper / junos | 22.3-r1 | 22.3-r1.x |
juniper / junos | 22.3 | 22.3.x |
juniper / junos | 22.4-r2-s1 | 22.4-r2-s1.x |
juniper / junos | 22.4 | 22.4.x |
juniper / junos | 22.4-r1 | 22.4-r1.x |
juniper / junos | 22.4-r2 | 22.4-r2.x |
juniper / junos | 22.4-r1-s1 | 22.4-r1-s1.x |