CVE-2014-6386: Juniper Junos

High severity, CVSS 7.8. EPSS: 2.7% chance of exploitation in the next 30 days.

Juniper Junos 11.4 before 11.4R8, 12.1X44 before 12.1X44-D35, 12.1X45 before 12.1X45-D25, 12.1X46 before 12.1X46-D20, 12.1X47 before 12.1X47-D10, 12.2 before 12.2R9, 12.3R2 before 12.3R2-S3, 12.3 before 12.3R3, 13.1 before 13.1R4, and 13.2 before 13.2R1 allows remote attackers to cause a denial of service (assertion failure and rpd restart) via a crafted BGP FlowSpec prefix.

Affected products

  • Juniper Junos: version 11.4 only; version 12.1x44 only; version 12.1x45 only; version 12.1x46 only; version 12.1x47 only; version 12.2 only; …

Published 2015-01-16. Last modified 2026-06-17.