CVSS: v3.1: 9.8 (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H) SEVERITY:CRITICAL
Multiple vulnerabilities have been resolved in 7.5.0 UP10 IF02.
Important security issues resolved include
In the Linux kernel, the following vulnerability has been resolved: ice: Fix some null pointer dereference issues in ice_ptp.c devm_kasprintf() returns a pointer to dynamically allocated memory which can be NULL upon failure.
More CVEs have been added in this PDF.
The following software releases have been updated to resolve these specific issues: Juniper Secure Analytics in 7.5.0 UP10 IF02 and all subsequent releases.Software updates are available for download at https://support.juniper.net/support/downloads/
Note: Juniper SIRT's policy is not to evaluate releases which are beyond End of Engineering (EOE) or End of Life (EOL).
There are no known workarounds for this issue.
2025-01-23: Initial Publication