CVE-2014-3825 is a denial-of-service vulnerability affecting Juniper SRX Series devices running specific Junos versions when an Application Layer Gateway (ALG) is enabled. A remote attacker can exploit this flaw by sending a crafted packet, causing the flowd process to crash. With a CVSS score of 6.8, this vulnerability has a medium severity, indicating that it can be exploited remotely with medium attack complexity, potentially leading to a partial loss of confidentiality, integrity, and availability. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
11.4CPE matchmatch criteria | cpe:2.3:o:juniper:junos:11.4:*:*:*:*:*:*:* | ||
12.1CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1:*:*:*:*:*:*:* | ||
12.1x44CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x44:*:*:*:*:*:*:* | ||
12.1x45CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x45:*:*:*:*:*:*:* | ||
12.1x46CPE matchmatch criteria | cpe:2.3:o:juniper:junos:12.1x46:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:P/I:P/A:P
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.