If Proxy ARP is enabled on an unnumbered interface, an attacker directly connected to the router can poison the ARP cache and create a bogus forwarding table entry for an IP address, effectively creating a denial of service for that subscriber or interface. When Proxy ARP is enabled on an unnumbered interface, the router will answer any ARP message from any IP address which could lead to exploitable information disclosure. Juniper SIRT is not aware of any malicious exploitation of this vulnerability. No other Juniper Networks products or platforms are affected by this issue. This issue has been assigned CVE-2013-6014.
The following software releases have been updated to resolve this specific issue:
No known workaround exists for this issue.