CVE-2016-1275
medium
CVSS v3
6.5
CVSS v2
6.1
VIR risk
6.5
Description
Juniper Junos OS before 13.3R9, 14.1R6 before 14.1R6-S1, and 14.1 before 14.1R7, when configured with VPLS routing-instances, allows remote attackers to obtain sensitive mbuf information by injecting a flood of Ethernet frames with IPv6 MAC addresses directly into a connected interface.
Predictions
Exploit likelihood
65%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cve@mitre.org — http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10750
References
CWEs
CWE-399
Verify integrity in audit chain (admin only). AS-IS.