Certain combinations of Junos OS CLI commands and arguments have been found to be exploitable in a way that can allow root access to the operating system. This may allow any user with permissions to run these CLI commands the ability to achieve elevated privileges and gain complete control of the device. These issues were found during internal product security testing. Juniper SIRT is not aware of any malicious exploitation of these vulnerabilities. No other Juniper Networks products or platforms are affected by these issues. This set of issues has been assigned CVE-2016-1271 .
The following software releases have been updated to resolve these specific issues: Junos OS 12.1X46-D45, 12.1X47-D30, 12.3R11, 12.3X48-D25, 13.2R8, 13.3R7, 14.1R6, 14.2R4, 15.1R1, 15.1F2, 15.1X49-D15 and all subsequent releases. These issues are being tracked as PRs 973106, 442580, 980411, 1019669, 1069867, and 1069873, and are visible on the Customer Support website. KB16765 [juniper.net] - "In which releases are vulnerabilities fixed?" describes which release vulnerabilities are fixed as per our End of Engineering and End of Life support policies.
Use access lists or firewall filters to limit access to the router's CLI only from trusted hosts. Restrict access to the CLI to only highly trusted administrators.
2016-04-13: Initial publication