QID 44163
Date Published: 2024-01-22
QID 44163: Juniper Network Operating System (Junos OS) Denial of Service (DoS) Vulnerability (JSA75735)
Juniper Junos is the network operating system used in Juniper Networks hardware systems.
A Heap-based Buffer Overflow vulnerability in the Routing Protocol Daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated, network based attacker to cause a Denial of Service (DoS).
Note: This issue only affects devices with NSR enabled. This issue requires an attacker to have an established BGP session to a system affected by the issue.
This issue affects all versions of Junos OS:
All versions earlier than 20.4R3-S9
21.2 versions earlier than 21.2R3-S7
21.3 versions earlier than 21.3R3-S5
21.4 versions earlier than 21.4R3-S5
22.1 versions earlier than 22.1R3-S4
22.2 versions earlier than 22.2R3-S2
22.3 versions earlier than 22.3R3-S1
22.4 versions earlier than 22.4R2-S2, 22.4R3
23.2 versions earlier than 23.2R1-S2, 23.2R2
QID detection logic: (Authenticated)
It checks for vulnerable Junos OS version.
Successful exploitation of this vulnerability by the attacker will create a sustained Denial of Service (DoS) condition.
- JSA75735 -
supportportal.juniper.net/JSA75735
CVEs related to QID 44163
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| JSA75735 |
|