QID 43952
Date Published: 2023-01-31
QID 43952: Juniper Network Operating System (Junos OS) QFX10K Series Denial of Service (DoS) Vulnerability (JSA70195)
Juniper Junos is the network operating system used in Juniper Networks hardware systems.
When sFlow is enabled and it monitors a packet forwarded via ECMP, a buffer management vulnerability in the dcpfe process of Juniper Networks Junos OS on QFX10K Series systems allows an attacker to cause the Packet Forwarding Engine (PFE) to crash and restart by sending specific genuine packets to the device, resulting in a Denial of Service (DoS) condition.
Affected Junos versions:
All versions prior to 19.4R3-S9
20.2 versions prior to 20.2R3-S6
20.3 versions prior to 20.3R3-S6
20.4 versions prior to 20.4R3-S5
21.1 versions prior to 21.1R3-S4
21.2 versions prior to 21.2R3-S3
21.3 versions prior to 21.3R3-S2
21.4 versions prior to 21.4R2-S2, 21.4R3
22.1 versions prior to 22.1R2
22.2 versions prior to 22.2R1-S2, 22.2R2
NOTE:
This issue only affects QFX10K Series systems with sFlow enabled.
QID detection logic: (Authenticated)
It checks for vulnerable Junos OS version.
Successful exploitation of this vulnerability may allows an attacker to cause the Packet Forwarding Engine (PFE) to crash and restart by sending specific genuine packets to the device, resulting in a Denial of Service (DoS) condition.
- JSA70195 -
kb.juniper.net/JSA70195
CVEs related to QID 43952
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| JSA70195 |
|