Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2013-6013


Buffer overflow in the flow daemon (flowd) in Juniper Junos 10.4 before 10.4S14, 11.4 before 11.4R7-S2, 12.1.X44 before 12.1X44-D15, 12.1X45 before 12.1X45-D10 on SRX devices, when using telnet pass-through authentication on the firewall, might allow remote attackers to execute arbitrary code via a crafted telnet message.


Published

2013-10-17T23:55:04.657

Last Modified

2025-04-11T00:51:21.963

Status

Deferred

Source

[email protected]

Severity

CVSSv2: 6.8 (MEDIUM)

CVSSv2 Vector

AV:N/AC:M/Au:N/C:P/I:P/A:P

  • Access Vector: NETWORK
  • Access Complexity: MEDIUM
  • Authentication: NONE
  • Confidentiality Impact: PARTIAL
  • Integrity Impact: PARTIAL
  • Availability Impact: PARTIAL
Exploitability Score

8.6

Impact Score

6.4

Weaknesses
  • Type: Primary
    CWE-119

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System juniper junos ≤ 10.4 Yes
Operating System juniper junos 4.0 Yes
Operating System juniper junos 4.1 Yes
Operating System juniper junos 4.2 Yes
Operating System juniper junos 4.3 Yes
Operating System juniper junos 4.4 Yes
Operating System juniper junos 5.0 Yes
Operating System juniper junos 5.1 Yes
Operating System juniper junos 5.2 Yes
Operating System juniper junos 5.3 Yes
Operating System juniper junos 5.4 Yes
Operating System juniper junos 5.5 Yes
Operating System juniper junos 5.6 Yes
Operating System juniper junos 5.7 Yes
Operating System juniper junos 6.0 Yes
Operating System juniper junos 6.1 Yes
Operating System juniper junos 6.2 Yes
Operating System juniper junos 6.3 Yes
Operating System juniper junos 6.4 Yes
Operating System juniper junos 7.0 Yes
Operating System juniper junos 7.1 Yes
Operating System juniper junos 7.2 Yes
Operating System juniper junos 7.3 Yes
Operating System juniper junos 7.4 Yes
Operating System juniper junos 7.5 Yes
Operating System juniper junos 7.6 Yes
Operating System juniper junos 8.0 Yes
Operating System juniper junos 8.1 Yes
Operating System juniper junos 8.2 Yes
Operating System juniper junos 8.3 Yes
Operating System juniper junos 8.4 Yes
Operating System juniper junos 9.0 Yes
Operating System juniper junos 9.1 Yes
Operating System juniper junos 9.2 Yes
Operating System juniper junos 9.4 Yes
Operating System juniper junos 9.5 Yes
Operating System juniper junos 9.6 Yes
Operating System juniper junos 11.4 Yes
Operating System juniper junos 12.1x44 Yes
Operating System juniper junos 12.1x45 Yes
Hardware juniper srx100 - No
Hardware juniper srx110 - No
Hardware juniper srx1400 - No
Hardware juniper srx210 - No
Hardware juniper srx220 - No
Hardware juniper srx240 - No
Hardware juniper srx3400 - No
Hardware juniper srx3600 - No
Hardware juniper srx550 - No
Hardware juniper srx5600 - No
Hardware juniper srx5800 - No
Hardware juniper srx650 - No

References