QID 44155
Date Published: 2024-01-18
QID 44155: Juniper Network Operating System (Junos OS) SRX 5000 Series Denial of Service (DoS) Vulnerability (JSA75733)
Juniper Junos is the network operating system used in Juniper Networks hardware systems.
A Heap-based Buffer Overflow vulnerability in the Network Services Daemon (NSD) of Juniper Networks Junos OS allows authenticated, low privileged, local attacker to cause a Denial of Service (DoS).
On an SRX 5000 Series device, when executing a specific command repeatedly, memory is corrupted, which leads to a Flow Processing Daemon (flowd) crash.
This issue affects Juniper Networks Junos OS on SRX 5000 Series:
All versions earlier than 20.4R3-S6
21.1 versions earlier than 21.1R3-S5
21.2 versions earlier than 21.2R3-S4
21.3 versions earlier than 21.3R3-S3
21.4 versions earlier than 21.4R3-S3
22.1 versions earlier than 22.1R3-S1
22.2 versions earlier than 22.2R3
22.3 versions earlier than 22.3R2
QID detection logic: (Authenticated)
It checks for vulnerable Junos OS version.
Successful exploitation of this vulnerability by the attacker will create a sustained Denial of Service (DoS) condition.
- JSA75733 -
supportportal.juniper.net/JSA75733
CVEs related to QID 44155
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| JSA75733 |
|