Juniper Security Updates – 04 February 2024

Juniper has released security updates to fix multiple vulnerabilities affecting Juniper Secure Analytics (JSA) Applications.

The addressed vulnerabilities could allow the attacker to obtain sensitive information, manipulate files, trigger cross-site scripting, perform denial of service attacks, or execute arbitrary code and gain access to the affected products.

Sample of the addressed vulnerabilities:

Juniper Netlib LAPACK Denial of Service Vulnerability (CVE-2021-4048):

  • CVSS: 9.1
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: None
  • Consequences: Denial of Service
Vulnerabilities
Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Juniper Security Advisory

References