CVE-2014-6377 is a denial-of-service vulnerability affecting Juniper JunosE versions before 13.3.3p0-1, 14.x before 14.3.2, and 15.x before 15.1.0. An unauthenticated remote attacker can trigger an SRP reset by sending a crafted ICMP packet to an interface or loopback IP address, provided DEBUG severity icmpTraffic logging is enabled. This vulnerability has a CVSS score of 7.8, indicating high severity due to its network attack vector, low complexity, and complete availability impact. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 13.3.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos_e:*:*:*:*:*:*:*:* | ||
13.3.0CPE matchmatch criteria | cpe:2.3:o:juniper:junos_e:13.3.0:*:*:*:*:*:*:* | ||
13.3.1CPE matchmatch criteria | cpe:2.3:o:juniper:junos_e:13.3.1:*:*:*:*:*:*:* | ||
14.3.0CPE matchmatch criteria | cpe:2.3:o:juniper:junos_e:14.3.0:*:*:*:*:*:*:* | ||
14.3.1CPE matchmatch criteria | cpe:2.3:o:juniper:junos_e:14.3.1:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:C
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.