CVE-2019-0064 describes a denial-of-service vulnerability affecting Juniper Networks Junos OS on SRX5000 Series devices when the 'set security zones security-zone <zone> tcp-rst' configuration is enabled. A specially crafted TCP packet can cause the flowd process to crash, leading to an extended DoS if a constant stream of such packets is received. This vulnerability has a CVSS v3.1 score of 7.5 (High), indicating a network-based attack with low complexity that can lead to high availability impact without requiring user interaction or privileges. There is no evidence of active exploitation, publicly available exploit code (Metasploit, Nuclei, ExploitDB), or significant community discussion or media coverage surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
18.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos:18.2:r3:*:*:*:*:*:* | ||
18.4CPE matchmatch criteria | cpe:2.3:o:juniper:junos:18.4:r2:*:*:*:*:*:* | ||
19.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos:19.2:r1:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.