CVE-2019-0011: Juniper Junos

Medium severity, CVSS 6.5. EPSS: 0.6% chance of exploitation in the next 30 days.

The Junos OS kernel crashes after processing a specific incoming packet to the out of band management interface (such as fxp0, me0, em0, vme0) destined for another address. By continuously sending this type of packet, an attacker can repeatedly crash the kernel causing a sustained Denial of Service. Affected releases are Juniper Networks Junos OS: 17.2 versions prior to 17.2R1-S7, 17.2R3; 17.3 versions prior to 17.3R3-S3; 17.4 versions prior to 17.4R1-S4, 17.4R2; 17.2X75 versions prior to 17.2X75-D110; 18.1 versions prior to 18.1R2.

Affected products

  • Juniper Junos: version 17.2 only; version 17.3 only; version 17.4 only; version 17.2x75 only; version 18.1 only

Published 2019-01-15. Last modified 2026-06-17.