Product Affected

All Juniper Networks M-series and T-series routing platforms with IPv6 enabled.
High

Problem

When an incoming IPv6 packet requires the router to generate an ICMPv6 response, the response might not be generated and the buffer containing the original packet might not be released. Eventually the Packet Forwarding Engine CPU might exhaust its packet memory and reboot. This problem exists in all JUNOS Release 6.x software built between February 24 and June 19, 2004 (inclusive) running on M-series and T-series routing platforms, and is tracked as PR/48386.

Solution

The JUNOS software has been modified to release the memory occupied by the original IPv6 packets.

All JUNOS software built on or after June 20, 2004 includes the corrected code. Customers running in an IPv6 environment are strongly encouraged to upgrade their software to incorporate this correction. Contact Juniper Networks Technical Assistance Center for availability and download instructions.

Severity Assessment

This remotely exploitable Denial of Service attack vector exists in all Juniper Netowrks M-series and T-series routing platforms on which IPv6 is enabled.