QID 44158
Date Published: 2024-01-18
QID 44158: Juniper Network Operating System (Junos OS) Denial of Service (DoS) Vulnerability (JSA75758)
Juniper Junos is the network operating system used in Juniper Networks hardware systems.
CVE-2024-21617 : An Incomplete Cleanup vulnerability in Nonstop active routing (NSR) component of Juniper Networks Junos OS allows an adjacent, unauthenticated attacker to cause memory leak leading to Denial of Service (DoS).
Junos OS:
22.2 versions earlier than 22.2R2-S2
22.3 versions earlier than 22.3R2
21.2 versions earlier than 21.2R3-S5
21.3 versions earlier than 21.3R3-S4
21.4 versions earlier than 21.4R3-S4
22.1 versions earlier than 22.1R3-S2
22.2 versions earlier than 22.2R3-S2
22.3 versions earlier than 22.3R2-S1, 22.3R3
22.4 versions earlier than 22.4R1-S2, 22.4R2
QID detection logic: (Authenticated)
It checks for vulnerable Junos OS version.
Note: This QID doesn't check for the NSR configure status , hence marked potential.
Successful exploitation of this vulnerability may result in a Denial of Service (DoS) condition.
- JSA75758 -
supportportal.juniper.net/JSA75758
CVEs related to QID 44158
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| JSA75758 |
|