CVE-2014-6377: Juniper Junos E

High severity, CVSS 7.8. EPSS: 1.8% chance of exploitation in the next 30 days.

Juniper JunosE before 13.3.3p0-1, 14.x before 14.3.2, and 15.x before 15.1.0, when DEBUG severity icmpTraffic logging is enabled, allows remote attackers to cause a denial of service (SRP reset) via a crafted ICMP packet to the (1) interface or (2) loopback IP address, which triggers a processor exception in ip_RxData_8.

Affected products

  • Juniper Junos E: up to and including 13.3.2; version 13.3.0 only; version 13.3.1 only; version 14.3.0 only; version 14.3.1 only

Published 2014-10-14. Last modified 2026-06-17.