The stateless firewall in Juniper Junos 13.3R3, 14.1R1, and 14.1R2, when using Trio-based PFE modules, does not properly match ports, which might allow remote attackers to bypass firewall rule.
Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-6383
Reference (s):
- BID:72071
- URL: http://www.securityfocus.com/bid/72071
- https://kb.juniper.net/InfoCenter/index?page=content&id=JSA10666
- SECTRACK:1031549
- URL: http://www.securitytracker.com/id/1031549

