Multiple vulnerabilities have been resolved in the Junos Space 17.2R1 release, including updates to third party software found within Junos Space. Important security issues resolved as a result of these upgrades include:
The following software releases have been updated to resolve these specific issues: Junos Space 17.2R1, and all subsequent releases. These issues are being tracked as PRs 1322467, 1296620, 1304289, 1322015, 1259822, 1287134, 1296621 and 1320984 which are visible on the Customer Support website.
Software Releases, patches and updates are available at https://www.juniper.net/support/downloads/ .
Use access lists or firewall filters to limit access to the device only from trusted hosts and administrators.
2018-01-10: Initial publication 2018-01-12: Include CVE IDs related to PostgreSQL upgrade (PR 1320984)
Juniper SIRT would like to acknowledge and thank the team at cyberhouse.ge for responsibly reporting CVE-2018-0013.