VORANT. Threat Intelligence Sign in Get the full feed

Juniper Junos OS multiple NTP vulnerabilities

high vulnerability telecommunicationsinfrastructure

ANSSI advisory details multiple NTP-related vulnerabilities in Juniper Junos OS and Junos OS Evolved allowing remote code execution, privilege escalation, and denial of service.

ANSSI (CERT-FR) has republished a Juniper Networks security bulletin (JSA11171) addressing multiple vulnerabilities affecting the NTP implementation bundled in Junos OS and Junos OS Evolved. The flaws, several dating back to 2013-2017 disclosures in the reference NTP daemon, can be leveraged by an attacker to trigger remote denial of service, arbitrary code execution, or privilege escalation depending on the specific CVE and affected code path.

A broad range of Junos OS branches are impacted, spanning versions from 12.3R12 through 19.1R1, as well as Junos OS Evolved releases prior to 20.1R1-EVO. No in-the-wild exploitation is mentioned in the advisory. Juniper has released patched versions for each affected branch; administrators should consult the vendor bulletin and apply the corresponding fixed releases as listed for their deployed version.

This is a routine vendor patch advisory relayed by a national CERT with no indication of active exploitation, and severity should be assessed per-device based on exposure of the NTP service and current Junos version in use.

Mentioned in this report

Vulnerabilities CVE-2013-5211weaponizedCVE-2016-9042CVE-2016-9310CVE-2017-6451CVE-2017-6452CVE-2017-6455CVE-2017-6458CVE-2017-6459CVE-2017-6460CVE-2017-6462CVE-2017-6463CVE-2017-6464

Source reporting: https://www.cert.ssi.gouv.fr/avis/CERTFR-2026-AVI-1124

This is the public brief

Subscribers see the full picture: extracted IOCs, ready-to-deploy detections (Sigma, Splunk, KQL, Elastic, YARA, Suricata), the entity graph, TAXII 2.1 feed and real-time alerts matched to your sectors.

Start free