{
    "id": "CVE-2019-0008",
    "published": "2019-04-10 20:29:00",
    "last_modified": "2026-06-17 02:07:29",
    "cvss_score": "9.8",
    "cvss_severity": "CRITICAL",
    "cvss_version": "3.1",
    "cvss_vector": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
    "cwe": "CWE-121",
    "description": "A certain sequence of valid BGP or IPv6 BFD packets may trigger a stack based buffer overflow in the Junos OS Packet Forwarding Engine manager (FXPC) process on QFX5000 series, EX4300, EX4600 devices. This issue can result in a crash of the fxpc daemon or may potentially lead to remote code execution. Affected releases are Juniper Networks Junos OS on QFX 5000 series, EX4300, EX4600 are: 14.1X53; 15.1X53 versions prior to 15.1X53-D235; 17.1 versions prior to 17.1R3; 17.2 versions prior to 17.2R3; 17.3 versions prior to 17.3R3-S2, 17.3R4; 17.4 versions prior to 17.4R2-S1, 17.4R3; 18.1 versions prior to 18.1R3-S1, 18.1R4; 18.2 versions prior to 18.2R2; 18.2X75 versions prior to 18.2X75-D30; 18.3 versions prior to 18.3R2.",
    "epss_score": "0.04545",
    "epss_percentile": "0.91322",
    "kev": 0,
    "kev_due": null,
    "has_exploit": 0,
    "updated_at": "2026-10-07 18:17:19",
    "priority": {
        "rank": 3,
        "label": "In your normal cycle",
        "why": "Critical by CVSS (9.8), but no sign of active exploitation."
    },
    "products": [
        {
            "vendor": "juniper",
            "product": "ex4300"
        },
        {
            "vendor": "juniper",
            "product": "ex4300m"
        },
        {
            "vendor": "juniper",
            "product": "ex4600"
        },
        {
            "vendor": "juniper",
            "product": "ex4650"
        },
        {
            "vendor": "juniper",
            "product": "junos"
        },
        {
            "vendor": "juniper",
            "product": "qfx5100"
        },
        {
            "vendor": "juniper",
            "product": "qfx5110"
        },
        {
            "vendor": "juniper",
            "product": "qfx5120"
        },
        {
            "vendor": "juniper",
            "product": "qfx5200-32c"
        },
        {
            "vendor": "juniper",
            "product": "qfx5200-48y"
        },
        {
            "vendor": "juniper",
            "product": "qfx5210-64c"
        }
    ],
    "kev_detail": null,
    "exploits": [],
    "refs_list": [
        "http://www.securityfocus.com/bid/107897",
        "https://kb.juniper.net/JSA10930",
        "http://www.securityfocus.com/bid/107897",
        "https://kb.juniper.net/JSA10930"
    ]
}