An Improper Certificate Validation weakness in the SRX Series Application Identification (app-id) signature update client of Juniper Networks Junos OS allows an attacker to perform Man-in-the-Middle (MitM) attacks which may compromise the integrity and confidentiality of the device. This issue affects: Juniper Networks Junos OS 15.1X49 versions prior to 15.1X49-D120 on SRX Series devices. No other versions of Junos OS are affected.

Published at
2019-10-09
830 days ago
Modified
2019-10-09
830 days ago
2019
Year
The year of the turtle

https://kb.juniper.net/JSA10952

MISC:https://kb.juniper.net/JSA10952

https://www.juniper.net/documentation/en_US/junos/topics/topic-map/security-application-identification-overview.html

MISC:https://www.juniper.net/documentation/en_US/junos/topics/topic-map/security-application-identification-overview.html

Vulnerability RAW

{
	"Title": {
		"_text": "CVE-2019-0054"
	},
	"Notes": {
		"Note": [
			{
				"_text": "An Improper Certificate Validation weakness in the SRX Series Application Identification (app-id) signature update client of Juniper Networks Junos OS allows an attacker to perform Man-in-the-Middle (MitM) attacks which may compromise the integrity and confidentiality of the device. This issue affects: Juniper Networks Junos OS 15.1X49 versions prior to 15.1X49-D120 on SRX Series devices. No other versions of Junos OS are affected."
			},
			{
				"_text": "2019-10-09"
			},
			{
				"_text": "2019-10-09"
			}
		]
	},
	"CVE": {
		"_text": "CVE-2019-0054"
	},
	"References": {
		"Reference": [
			{
				"URL": {
					"_text": "https://kb.juniper.net/JSA10952"
				},
				"Description": {
					"_text": "MISC:https://kb.juniper.net/JSA10952"
				}
			},
			{
				"URL": {
					"_text": "https://www.juniper.net/documentation/en_US/junos/topics/topic-map/security-application-identification-overview.html"
				},
				"Description": {
					"_text": "MISC:https://www.juniper.net/documentation/en_US/junos/topics/topic-map/security-application-identification-overview.html"
				}
			}
		]
	}
}