CVE-2020-1603 is a Denial of Service (DoS) vulnerability in Juniper Networks Junos OS, affecting various versions prior to their respective patches. Specifically crafted IPv6 packets, intended to be blocked by the Routing Engine (RE), are improperly allowed to egress, leading to a memory leak. This memory leak eventually causes a kernel crash or device hang, requiring a power cycle to restore service. The vulnerability has a CVSS score of 8.6 (High), indicating a critical severity. It can be exploited remotely over the network with low attack complexity, requiring no user interaction. The primary impact is a complete loss of availability (DoS) for the affected device. There is currently no evidence of active exploitation, and no public exploit code is available in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are minimal, suggesting low public awareness or attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
16.1CPE matchmatch criteria | cpe:2.3:o:juniper:junos:16.1:-:*:*:*:*:*:* | ||
16.1CPE matchmatch criteria | cpe:2.3:o:juniper:junos:16.1:r1:*:*:*:*:*:* | ||
16.1CPE matchmatch criteria | cpe:2.3:o:juniper:junos:16.1:r2:*:*:*:*:*:* | ||
16.1CPE matchmatch criteria | cpe:2.3:o:juniper:junos:16.1:r3:*:*:*:*:*:* | ||
16.1CPE matchmatch criteria | cpe:2.3:o:juniper:junos:16.1:r3-s10:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.