Incorrect signedness comparison in the ioctl(2) handler allows a malicious local user to overwrite a portion of the kernel memory. A local user may crash the kernel, read a portion of kernel memory and execute arbitrary code in kernel context. The result of executing an arbitrary kernel code is privilege escalation.
Juniper SIRT is not aware of any malicious exploitation of this vulnerability. No other Juniper Networks products or platforms are affected by this issue. This issue has been assigned CVE-2016-1886 .
2017-04-12: Initial publication 2017-04-26: Added 14.1X53-D43 as fixed version. 2017-05-19: Replacing 12.3X48-D55 with 12.3X48-D50 as the fix is (will be) available in 12.3X48-D50