CVE-2020-1641
Last modified
CVE-2020-1641 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. A Race Condition vulnerability in Juniper Networks Junos OS LLDP implementation allows an attacker to cause LLDP to crash leading to a Denial of Service (DoS). This issue occurs when crafted LLDP packets are received by the device from an adjacent device. EPSS estimates a 0.38% chance of exploitation in the next 30 days.
Description
A Race Condition vulnerability in Juniper Networks Junos OS LLDP implementation allows an attacker to cause LLDP to crash leading to a Denial of Service (DoS). This issue occurs when crafted LLDP packets are received by the device from an adjacent device. Multiple LACP flaps will occur after LLDP crashes. An indicator of compromise is to evaluate log file details for lldp with RLIMIT. Intervention should occur before 85% threshold of used KB versus maximum available KB memory is reached. show log messages | match RLIMIT | match lldp | last 20 Matching statement is " /kernel: %KERNEL-[number]: Process ([pid #],lldpd) has exceeded 85% of RLIMIT_DATA: " with [] as variable data to evaluate for. This issue affects: Juniper Networks Junos OS: 12.3 versions prior to 12.3R12-S15; 12.3X48 versions prior to 12.3X48-D95; 15.1 versions prior to 15.1R7-S6; 15.1X49 versions prior to 15.1X49-D200; 15.1X53 versions prior to 15.1X53-D593; 16.1 versions prior to 16.1R7-S7; 17.1 versions prior to 17.1R2-S11, 17.1R3-S2; 17.2 versions prior to 17.2R1-S9, 17.2R3-S3; 17.3 versions prior to 17.3R2-S5, 17.3R3-S6; 17.4 versions prior to 17.4R2-S4, 17.4R3; 18.1 versions prior to 18.1R3-S5; 18.2 versions prior to 18.2R2-S7, 18.2R3; 18.2X75 versions prior to 18.2X75-D12, 18.2X75-D33, 18.2X75-D50, 18.2X75-D420; 18.3 versions prior to 18.3R1-S7, 18.3R2-S3, 18.3R3; 18.4 versions prior to 18.4R1-S5, 18.4R2; 19.1 versions prior to 19.1R1-S4, 19.1R2.
Metrics
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Juniper | Junos | 12.3 |
| Juniper | Junos | 12.3x48 |
| Juniper | Junos | 15.1 |
| Juniper | Junos | 15.1x49 |
| Juniper | Junos | 15.1x53 |
| Juniper | Junos | 16.1 |
| Juniper | Junos | 17.1 |
| Juniper | Junos | 17.2 |
| Juniper | Junos | 17.3 |
| Juniper | Junos | 17.4 |
| Juniper | Junos | 18.1 |
| Juniper | Junos | 18.2 |
| Juniper | Junos | 18.2x75 |
| Juniper | Junos | 18.3 |
| Juniper | Junos | 18.4 |
| Juniper | Junos | 19.1 |
References
- https://kb.juniper.net/JSA11027Vendor Advisory
- https://kb.juniper.net/JSA11027Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2020-1641?
How severe is CVE-2020-1641?
How do I fix CVE-2020-1641?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2020
- CVE-2020-1633Due to a new NDP proxy feature for EVPN leaf nodes introduce…6.5
- CVE-2020-1634On High-End SRX Series devices, in specific configurations a…7.5
- CVE-2020-1637A vulnerability in Juniper Networks SRX Series device config…6.5
- CVE-2020-1638The FPC (Flexible PIC Concentrator) of Juniper Networks Juno…7.5
- CVE-2020-1639When an attacker sends a specific crafted Ethernet Operation…7.5
- CVE-2020-1640An improper use of a validation framework when processing in…7.5
- CVE-2020-1643Execution of the "show ospf interface extensive" or "show os…5.5
- CVE-2020-1644On Juniper Networks Junos OS and Junos OS Evolved devices, t…7.5
- CVE-2020-1645When DNS filtering is enabled on Juniper Networks Junos MX S…8.3
- CVE-2020-1646On Juniper Networks Junos OS and Junos OS Evolved devices, p…7.5
- CVE-2020-1647On Juniper Networks SRX Series with ICAP (Internet Content A…9.8
- CVE-2020-1648On Juniper Networks Junos OS and Junos OS Evolved devices, p…7.5
Are you affected by CVE-2020-1641?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
