CVE-2021-0225
Summary
| CVE | CVE-2021-0225 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-04-22 20:15:00 UTC |
| Updated | 2021-04-27 19:49:00 UTC |
| Description | An Improper Check for Unusual or Exceptional Conditions in Juniper Networks Junos OS Evolved may cause the stateless firewall filter configuration which uses the action 'policer' in certain combinations with other options to not take effect. An administrator can use the following CLI command to see the failures with filter configuration: user@device> show log kfirewall-agent.log | match ERROR Jul 23 14:16:03 ERROR: filter not supported This issue affects Juniper Networks Junos OS Evolved: Versions 19.1R1-EVO and above prior to 20.3R1-S2-EVO, 20.3R2-EVO. This issue does not affect Juniper Networks Junos OS. |
Risk And Classification
Problem Types: CWE-754
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Operating System | Juniper | Junos Os Evolved | 19.1 | r1 | All | All |
| Operating System | Juniper | Junos Os Evolved | 19.1 | r2 | All | All |
| Operating System | Juniper | Junos Os Evolved | 19.2 | r1 | All | All |
| Operating System | Juniper | Junos Os Evolved | 19.2 | r2 | All | All |
| Operating System | Juniper | Junos Os Evolved | 19.3 | r1 | All | All |
| Operating System | Juniper | Junos Os Evolved | 19.3 | r2 | All | All |
| Operating System | Juniper | Junos Os Evolved | 20.1 | r1 | All | All |
| Operating System | Juniper | Junos Os Evolved | 20.1 | r1-s1 | All | All |
| Operating System | Juniper | Junos Os Evolved | 20.2 | r1 | All | All |
| Operating System | Juniper | Junos Os Evolved | 20.2 | r1-s1 | All | All |
| Operating System | Juniper | Junos Os Evolved | 20.3 | r1 | All | All |
| Operating System | Juniper | Junos Os Evolved | 20.3 | r1-s1 | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| 2021-04 Security Bulletin: Junos OS Evolved: Stateless IP firewall filter does not work as expected (CVE-2021-0225) - Juniper Networks | MISC | kb.juniper.net | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.