Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.105997
Category:JunOS Local Security Checks
Title:Juniper Networks Junos OS Insufficient Entropy Vulnerability
Summary:Junos OS on QFX3500 and QFX3600 platforms is prone to a; insufficient entropy vulnerability.
Description:Summary:
Junos OS on QFX3500 and QFX3600 platforms is prone to a
insufficient entropy vulnerability.

Vulnerability Insight:
On the QFX3500 and QFX3600 platforms, the number of bytes
collected from the RANDOM_INTERRUPT entropy source when the device boots up is insufficient. Entropy
increases after the system has been up and running for some time, but immediately after boot, the
entropy is very low.

Vulnerability Impact:
The vulnerability possibly leads to weak or duplicate SSH
keys or self-signed SSL/TLS certificates.

Affected Software/OS:
Junos OS 12.2X50, 13.1X50, 13.2X51 and 13.2X52

Solution:
New builds of Junos OS software are available from Juniper.

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:L/Au:S/C:C/I:N/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2015-3006
CopyrightCopyright (C) 2015 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.