CVE detail

CVE-2020-1643 — CVE-2020-1643

Published 2020-07-17 · Modified 2026-06-17 · Vendor juniper · Product junos · Source nvd
MEDIUM
severity
CVSS-derived band
5.5
CVSS v3
0–10 scale
0.0034
EPSS probability
exploitation probability, 30d
27.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog

Description

Execution of the "show ospf interface extensive" or "show ospf interface detail" CLI commands on a Juniper Networks device running Junos OS may cause the routing protocols process (RPD) to crash and restart if OSPF interface authentication is configured, leading to a Denial of Service (DoS). By continuously executing the same CLI commands, a local attacker can repeatedly crash the RPD process causing a sustained Denial of Service. Note: Only systems utilizing ARM processors, found on the EX2300 and EX3400, are vulnerable to this issue. Systems shipped with other processor architectures are not vulnerable to this issue. The processor architecture can be displayed via the 'uname -a' command. For example: ARM (vulnerable): % uname -a | awk '{print $NF}' arm PowerPC (not vulnerable): % uname -

Remediation

vendor remediation guidance

The following software releases have been updated to resolve this specific issue: 12.3X48-D100, 14.1X53-D140, 14.1X53-D54, 15.1R7-S7, 15.1X49-D210, 15.1X53-D593, 16.1R7-S8, 17.1R2-S12, 17.2R3-S4, 17.3R3-S8, 17.4R2-S2, 17.4R3, 18.1R3-S2, 18.2R2, 18.2X75-D40, 18.3R1-S2, 18.3R2, 18.4R1, and all subsequent releases.

workarounds

Limit access to the Junos CLI and shell to only trusted administrators. Restrict access to "show ospf interface extensive" or "show ospf interface detail" via command authorization until an upgrade can be performed.

ProductVulnerable rangeFixed versionAdvisory
Juniper Networks Junos OS>=12.3X48<12.3X48-D10012.3X48-D100advisory ↗
Juniper Networks Junos OS>=14.1X53<14.1X53-D140, 14.1X53-D5414.1X53-D140, 14.1X53-D54advisory ↗
Juniper Networks Junos OS>=15.1<15.1R7-S715.1R7-S7advisory ↗
Juniper Networks Junos OS>=15.1X49<15.1X49-D21015.1X49-D210advisory ↗
Juniper Networks Junos OS>=15.1X53<15.1X53-D59315.1X53-D593advisory ↗
Juniper Networks Junos OS>=16.1<16.1R7-S816.1R7-S8advisory ↗
Juniper Networks Junos OS>=17.1<17.1R2-S1217.1R2-S12advisory ↗
Juniper Networks Junos OS>=17.2<17.2R3-S417.2R3-S4advisory ↗
Juniper Networks Junos OS>=17.3<17.3R3-S817.3R3-S8advisory ↗
Juniper Networks Junos OS>=17.4<17.4R2-S2, 17.4R317.4R2-S2, 17.4R3advisory ↗
Juniper Networks Junos OS>=18.1<18.1R3-S218.1R3-S2advisory ↗
Juniper Networks Junos OS>=18.2<18.2R2, 18.2R318.2R2, 18.2R3advisory ↗
Juniper Networks Junos OS>=18.2X75<18.2X75-D4018.2X75-D40advisory ↗
Juniper Networks Junos OS>=18.3<18.3R1-S2, 18.3R218.3R1-S2, 18.3R2advisory ↗

References

cvedb.io · NVD · CISA KEV · FIRST EPSS · vendor advisories (CVE Program List v5). Informational only, no warranty — verify every remediation against the vendor advisory before acting on it. This product uses data from the NVD API but is not endorsed or certified by the NVD, CISA, FIRST.org or any vendor named. CVE® is a registered trademark of The MITRE Corporation.