CVE-2018-0017 is a denial-of-service vulnerability affecting Juniper Networks Junos OS on SRX series devices, specifically within the Network Address Translation - Protocol Translation (NAT-PT) feature. A specially crafted IPv6 packet can crash the flowd daemon, leading to repeated crashes and an extended denial of service. With a CVSS score of 6.5 (Medium), this vulnerability has a low attack complexity and requires low privileges, allowing an unauthenticated attacker to cause a high impact on availability. There is no evidence of active exploitation, public exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 12.1x46, <= 12.1x46\:d72CPE matchmatch criteria | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 12.3x48, <= 12.3x48\:d55CPE matchmatch criteria | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 15.1x49, <= 15.1x49\:d90CPE matchmatch criteria | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 12.1X46, < 12.1X46-D76CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 12.3X48, < 12.3X48-D55CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.