A Double Free vulnerability in the software forwarding interface daemon (sfid) process of Juniper Networks Junos OS allows an adjacently-connected attacker to cause a Denial of Service (DoS) by sending a crafted ARP packet to the device. Continued receipt and processing of the crafted ARP packets will create a sustained Denial of Service (DoS) condition. This issue affects: Juniper Networks Junos OS on EX2200-C Series, EX3200 Series, EX3300 Series, EX4200 Series, EX4500 Series, EX4550 Series, EX6210 Series, EX8208 Series, EX8216 Series. 12.3 versions prior to 12.3R12-S17; 15.1 versions prior to 15.1R7-S8. This issue only affects the listed Marvell-chipset based EX Series devices. No other products or platforms are affected.
References
Link | Resource |
---|---|
https://kb.juniper.net/JSA11162 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2021-04-22 13:15
Updated : 2021-07-23 12:11
NVD link : CVE-2021-0271
Mitre link : CVE-2021-0271
JSON object : View
CWE
CWE-415
Double Free
Products Affected
juniper
- ex4550
- ex3200
- ex4200
- ex3300
- junos
- ex8216
- ex6210
- ex8208
- ex4500
- ex2200-c