CVE-2020-1640 is a Denial of Service (DoS) vulnerability in Juniper Networks Junos OS, affecting the RPD (routing protocols process) daemon. An improper use of a validation framework allows an unauthenticated attacker to crash RPD by continuously sending specially crafted BGP packets, impacting various Junos OS versions from 16.1 to 20.1. The vulnerability has a CVSS score of 7.5 (HIGH), indicating a significant impact. It can be exploited remotely over the network with low attack complexity, requiring no authentication, and results in a complete loss of availability for affected devices. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage regarding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
16.1CPE matchmatch criteria | cpe:2.3:o:juniper:junos:16.1:r7-s6:*:*:*:*:*:* | ||
16.1CPE matchmatch criteria | cpe:2.3:o:juniper:junos:16.1:r7-s7:*:*:*:*:*:* | ||
17.3CPE matchmatch criteria | cpe:2.3:o:juniper:junos:17.3:r2-s5:*:*:*:*:*:* | ||
17.3CPE matchmatch criteria | cpe:2.3:o:juniper:junos:17.3:r3-s6:*:*:*:*:*:* | ||
17.3CPE matchmatch criteria | cpe:2.3:o:juniper:junos:17.3:r3-s7:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.