CVE-2016-1257 describes a denial-of-service vulnerability in Juniper Junos OS affecting various versions when LDP is enabled. A remote attacker can trigger a Routing Process Daemon (RPD) crash by sending a specially crafted LDP packet. This vulnerability has a CVSSv3 score of 5.9 (Medium), indicating a network-based attack with high impact on availability and high attack complexity. There is no evidence of active exploitation, nor are there known public exploits or Metasploit modules. While there is minimal community discussion, it is not listed in CISA's KEV catalog.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
13.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos:13.2:r5:*:*:*:*:*:* | ||
13.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos:13.2:r6:*:*:*:*:*:* | ||
13.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos:13.2:r7:*:*:*:*:*:* | ||
13.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos:13.2:r7-s1:*:*:*:*:*:* | ||
13.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos:13.2:r7-s2:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.