QID 44025

Date Published: 2023-05-02

QID 44025: Juniper Network Operating System (Junos OS) Multiple Vulnerabilities (JSA70605)

Juniper Junos is the network operating system used in Juniper Networks hardware systems.

Affected Junos versions:
All versions prior to 19.1R3-S10
19.4 versions prior to 19.4R3-S10
20.2 versions prior to 20.2R3-S6
20.3 versions prior to 20.3R3-S6
20.4 versions prior to 20.4R3-S5
21.1 versions prior to 21.1R3-S4
21.2 versions prior to 21.2R3-S4
21.3 versions prior to 21.3R3-S3
21.4 versions prior to 21.4R3-S1
22.1 versions prior to 22.1R2-S2, 22.1R3
22.2 versions prior to 22.2R2-S1, 22.2R3
Note: This QID only checks for the vulnerable versions and does not checks for workaround conditions, Hence QID is kept as practice
QID detection logic: (Authenticated)
It checks for vulnerable Junos OS version.

Successful exploitation could lead to compromise confidentiality, integrity and availability

  • CVSS V3 rated as Critical - 9.8 severity.
  • CVSS V2 rated as Critical - 9 severity.
  • Solution
    Please refer JSA70605

    Vendor References
    Software Advisories
    Advisory ID Software Component Link
    JSA70605 URL Logo kb.juniper.net/JSA70605