CVE-2014-3817 is a denial-of-service vulnerability affecting specific versions of Juniper Junos on SRX Series devices when IPv4 to IPv6 NAT protocol translation is enabled. An unauthenticated remote attacker can exploit this by sending a crafted packet, leading to a flowd hang or crash. With a CVSS score of 7.8, this vulnerability is considered high severity due to its network-based attack vector and complete availability impact. While no public exploit code or active exploitation has been observed, and it has minimal community discussion, organizations using affected Juniper Junos versions should apply the recommended patches.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
11.4CPE matchmatch criteria | cpe:2.3:o:juniper:junos:11.4:*:*:*:*:*:*:* | ||
12.1x44CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x44:*:*:*:*:*:*:* | ||
12.1x45CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x45:*:*:*:*:*:*:* | ||
12.1x46CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x46:*:*:*:*:*:*:* | ||
12.1x47CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x47:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:L/Au:N/C:N/I:N/A:C
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.