CVE-2021-0251
Last modified
CVE-2021-0251 is a high-severity vulnerability rated 8.6/10 on the CVSS scale. A NULL Pointer Dereference vulnerability in the Captive Portal Content Delivery (CPCD) services daemon (cpcd) of Juniper Networks Junos OS on MX Series with MS-PIC, MS-SPC3, MS-MIC or MS-MPC allows an attacker to send malformed HTTP packets to the device thereby causing a Denial of Service (DoS), crashing the Multiservices PIC Management Daemon (mspmand) process thereby denying users the ability to login, while concurrently impacting other mspmand services and traffic through the device. Continued receipt and processing of these malformed packets will create a sustained Denial of Service (DoS) condition. EPSS estimates a 1.06% chance of exploitation in the next 30 days.
Description
A NULL Pointer Dereference vulnerability in the Captive Portal Content Delivery (CPCD) services daemon (cpcd) of Juniper Networks Junos OS on MX Series with MS-PIC, MS-SPC3, MS-MIC or MS-MPC allows an attacker to send malformed HTTP packets to the device thereby causing a Denial of Service (DoS), crashing the Multiservices PIC Management Daemon (mspmand) process thereby denying users the ability to login, while concurrently impacting other mspmand services and traffic through the device. Continued receipt and processing of these malformed packets will create a sustained Denial of Service (DoS) condition. While the Services PIC is restarting, all PIC services will be bypassed until the Services PIC completes its boot process. An attacker sending these malformed HTTP packets to the device who is not part of the Captive Portal experience is not able to exploit this issue. This issue is not applicable to MX RE-based CPCD platforms. This issue affects: Juniper Networks Junos OS on MX Series 17.3 version 17.3R1 and later versions prior to 17.4 versions 17.4R2-S9, 17.4R3-S2; 18.1 versions prior to 18.1R3-S9; 18.2 versions prior to 18.2R3-S3; 18.3 versions prior to 18.3R3-S1; 18.4 versions prior to 18.4R3; 19.1 versions prior to 19.1R2-S2, 19.1R3; 19.2 versions prior to 19.2R2; 19.3 versions prior to 19.3R3. This issue does not affect: Juniper Networks Junos OS versions prior to 17.3R1.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Juniper | Junos | 17.3 | R1 |
| Juniper | Junos | 17.4 | — |
| Juniper | Junos | 18.1 | — |
| Juniper | Junos | 18.2 | — |
| Juniper | Junos | 18.3 | — |
| Juniper | Junos | 18.4 | — |
| Juniper | Junos | 19.1 | — |
| Juniper | Junos | 19.2 | — |
| Juniper | Junos | 19.3 | — |
References
- https://kb.juniper.net/JSA11144Vendor Advisory
- https://kb.juniper.net/JSA11144Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2021-0251?
How severe is CVE-2021-0251?
How do I fix CVE-2021-0251?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2021
- CVE-2021-0245A Use of Hard-coded Credentials vulnerability in Juniper Net…7.8
- CVE-2021-0246On SRX1500, SRX4100, SRX4200, SRX4600, SRX5000 Series with S…7.3
- CVE-2021-0247A Race Condition (Concurrent Execution using Shared Resource…5.5
- CVE-2021-0248This issue is not applicable to NFX NextGen Software. On NFX…10
- CVE-2021-0249On SRX Series devices configured with UTM services a buffer …9.8
- CVE-2021-0250In segment routing traffic engineering (SRTE) environments w…7.5
- CVE-2021-0252NFX Series devices using Juniper Networks Junos OS are susce…7.8
- CVE-2021-0253NFX Series devices using Juniper Networks Junos OS are susce…7.8
- CVE-2021-0254A buffer size validation vulnerability in the overlayd servi…9.8
- CVE-2021-0255A local privilege escalation vulnerability in ethtraceroute …7.8
- CVE-2021-0256A sensitive information disclosure vulnerability in the mosq…5.5
- CVE-2021-0257On Juniper Networks MX Series and EX9200 Series platforms wi…6.5
Are you affected by CVE-2021-0251?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
