QID 43951
Date Published: 2023-01-30
QID 43951: Juniper Network Operating System (Junos OS) Denial of Service (DoS) Vulnerability (JSA70181)
Juniper Junos is the network operating system used in Juniper Networks hardware systems.
An Access of Uninitialized Pointer vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS allows a locally authenticated attacker with low privileges to cause a Denial of Service (DoS).
Affected Junos versions:
15.1 versions prior to 15.1R7-S12
19.1 versions prior to 19.1R3-S9
19.2 versions prior to 19.2R1-S9, 19.2R3-S5
19.3 versions prior to 19.3R3-S6
19.4 versions prior to 19.4R2-S7, 19.4R3-S8
20.1 versions prior to 20.1R3-S4
20.2 versions prior to 20.2R3-S5
20.3 versions prior to 20.3R3-S5
20.4 versions prior to 20.4R3-S4
21.1 versions prior to 21.1R1-S1, 21.1R2
QID detection logic: (Authenticated)
It checks for vulnerable Junos OS version.
Successful exploitation of this vulnerability may allows a locally authenticated attacker with low privileges to cause a Denial of Service (DoS).
Junos OS: 15.1R7-S12, 19.1R3-S9, 19.2R1-S9, 19.2R3-S5, 19.3R3-S6, 19.4R2-S7, 19.4R3-S8, 20.1R3-S4, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R1-S1, 21.1R2, 21.2R1, and all subsequent releases. Please refer to JSA70181
Workaround:
To reduce the risk of exploitation of this issue, use access lists or firewall filters to limit access to only trusted networks, hosts and users.
- JSA70181 -
kb.juniper.net/JSA70181
CVEs related to QID 43951
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| JSA70181 |
|