Alert Type

SRN - Software Release Notification

Product Affected

ACX, ACX5K, EX, MX, T, PTX, VMX, VRR

Alert Description

Junos Software Service Release version 16.2R2-S11 is now available for download from the Junos software download site
Download Junos Software Service Release:

  1. Go to Junos Platforms - Download Software page
  2. Input your product in the "Find a Product" search box
  3. From the Type/OS drop-down menu, select Junos SR
  4. From the Version drop-down menu, select your version
  5. Click the Software tab
  6. Select the Install Package as need and follow the prompts

Solution

Junos Software service Release version 16.2R2-S11 is now available.

16.2R2-S11 - List of Fixed issues

PR Number Synopsis Category:Device Configuration Daemon
1387962 DCD core can be seen after FPC restart if channelized interfaces are configured
 
If channelized interface coc1 is configured and FPC restart is performed then a core will generate and DCD restart can be seen. Currently we do not have any workaround for this issue. In case of all other interfaces core will not generate and normal behavior is seen.
PR Number Synopsis Category:Kernel MX virtual-chassis PRs
1298628 Adding an option to disable icmd process and change the default behavior for icmpd to be disabled by default
 
We now disable the Internal Communication health Monitor daemon (ICMD) by default. We also add a new HIDDEN CLI knob to allow users to enable ICMD.
PR Number Synopsis Category:next gen multicast for L3VPNs
1460625 The rpd process might crash due to memory leak in "MVPN RPF Src PE" block
 
In NG-MVPN scenario with multiple multicast sources, the rpd process might crash due to memory leak in "MVPN RPF Src PE" block.
PR Number Synopsis Category:Kernel socket data replication issues for protocols that use
1263048 The kernel crash might be seen on primary RE due to kernel memory leak
 
The kernel crash might be seen on primary RE and can cause the primary RE reboot.
PR Number Synopsis Category:SFW, CGNAT on MS-MIC/MS-MPC (XLP)
1405423 MX Series: Denial of Service vulnerability in MS-PIC component on MS-MIC or MS-MPC (CVE-2019-0065)
 
On MX Series, when the SIP ALG is enabled, receipt of a certain malformed SIP packet may crash the MS-PIC component on MS-MIC or MS-MPC. Refer to https://kb.juniper.net/JSA10964 [juniper.net] for more information.

Modification History

First publication date 2019-11-27