Multiple vulnerabilities have been resolved in the Juniper Secure Analytics (JSA) JSA 7.3.2 patch 7, 7.3.3 patch 3, and 7.4.0 by fixing vulnerabilities in the third party software packets in addition to other software components.
Juniper SIRT is not aware of any malicious exploitation of these vulnerabilities.
This issue affects Juniper Networks Juniper Secure Analytics (JSA)
7.3.0 versions;
7.3.1 versions;
7.3.2 versions prior to 7.3.2 Patch 7;
7.3.3 versions prior to 7.3.3 Patch 3.
Juniper SIRT is not aware of any malicious exploitation of this vulnerability.
This issue was discovered during an external security research.
The important security issues resolved include:
The issues listed above have been resolved in JSA: 7.3.2 patch 7, 7.3.3 patch 3, 7.4.0, and all subsequent releases.
This issue is being tracked as 1502960 , 1502962 , 1502955 , 1502937 , 1502935 , 1502905 , 1502903 , 1502642 , 1502641 , 1502621 , 1502620 , 1502618 , 1483098 and 1483057 .
Software releases or updates are available for download at https://www.juniper.net/support/downloads/ .
There are no known workarounds for this issue.
2020-07-08: Initial publication 2020-11-20: Updated terminology