QID 44149
Date Published: 2024-01-18
QID 44149: Juniper Network Operating System (Junos OS) Processing of a specific SIP packet causes NAT IP allocation to fail (JSA75757)
An Improper Validation of Syntactic Correctness of Input vulnerability in Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause Denial of Service (DoS).
Making this QID as practice as we cannot add SIP ALG enabled check in signature.
Affected Junos OS versions:
All versions earlier than 21.2R3-S6
21.3 versions earlier than 21.3R3-S5
21.4 versions earlier than 21.4R3-S5
22.1 versions earlier than 22.1R3-S4
22.2 versions earlier than 22.2R3-S3
22.3 versions earlier than 22.3R3-S1
22.4 versions earlier than 22.4R2-S2, 22.4R3
23.2 versions earlier than 23.2R1-S1, 23.2R2
NOTE:
This vulnerability only affects to MX Series and SRX series.
QID detection logic: (Authenticated)
It checks for vulnerable Junos OS version.
Successful exploitation of this vulnerability may cause a Denial of Service (DoS)
- JSA75757 -
supportportal.juniper.net/JSA75757
CVEs related to QID 44149
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| JSA75757 |
|