Juniper routers open to attack
No malicious exploitation reported yet
By Jim Duffy | Network World US | Published: 10:05, 05 February 2013
Juniper discovered a potential TCP vulnerability that affects certain releases of Junos software during "routine internal product testing," the company said. A Juniper spokesperson would not make an advisory on it available to Network World for publication.
But a report in Australia's iTnews.com states that by sending a specially crafted transmission control protocol (TCP) packet to a listening port on a Juniper Routing Engine, an exploiter can make the kernel in Junos crash, and cause routers to switch over or reboot.
Related Articles on Techworld
Versions of Junos older than those released on 17 January are affected, according to iTnews, with newer ones containing a fix for the problem. The site, which apparently has access to the Juniper advisory, also states that the Juniper advisory recommends using access lists or firewall filters for the routers, deployed on both the edge and control plane.
The Juniper advisory also suggests implementing source address anti-spoofing to prevent traffic from bogus addresses reaching the devices, according to iTnews. The site also say unicast reverse path forwarding -- which checks if the IP address in a packet is reachable and if not, drops it -- can also be used to mitigate against the attack, together with RFC 3682 time-to-live security.
The Juniper spokesperson said the company is not aware of any malicious exploitation of the vulnerability.
"We are encouraging our customers to contact Juniper's Customer Support Center for a detailed advisory and solution implementation," the spokesperson stated in an email. "As a networking and security leader, we work closely with our customers to protect and defend their networks, and are committed to the responsible disclosure of security vulnerabilities."