CVE-2013-4687: Juniper Junos
High severity, CVSS 7.8. EPSS: 2.6% chance of exploitation in the next 30 days.
flowd in Juniper Junos 10.4 before 10.4S14, 11.2 and 11.4 before 11.4R6-S2, and 12.1 before 12.1R6 on SRX devices, when certain Application Layer Gateways (ALGs) are enabled, allows remote attackers to cause a denial of service (daemon crash) via crafted TCP packets, aka PRs 727980, 806269, and 835593.
Affected products
- Juniper Junos: version 10.4 only; version 11.2 only; version 11.4 only; version 12.1 only
- Juniper SRX100
- Juniper SRX110
- Juniper SRX1400
- Juniper SRX210
- Juniper SRX220
- Juniper SRX240
- Juniper SRX3400
- Juniper SRX3600
- Juniper SRX550
- Juniper SRX5600
- Juniper SRX5800
- Juniper SRX650
Published 2013-07-11. Last modified 2026-06-16.