QID 44198
QID 44198: Juniper Network Operating System (Junos OS) Denial of Service (DoS) Vulnerability (JSA79109)
Juniper Junos is the network operating system used in Juniper Networks hardware systems.
CVE-2024-30378: A Use After Free vulnerability in command processing of Juniper Networks Junos OS on MX Series allows a local, authenticated attacker to cause the broadband edge service manager daemon (bbe-smgd) to crash upon execution of specific CLI commands, creating a Denial of Service (DoS) condition.
This issue affects versions of Junos OS:
All versions prior to 20.4R3-S5
21.1 prior to 21.1R3-S4
21.2 prior to 21.2R3-S3
21.3 prior to 21.3R3-S5
21.4 prior to 21.4R3-S5
22.1 prior to 22.1R3
22.2 prior to 22.2R3
22.3 prior to 22.3R2
QID detection logic: (Authenticated)
It checks for vulnerable Junos OS versions.
Note: Subscriber Services (Broadband Edge) and GRES must be enabled to be vulnerable to this issue.
Note: This QID is marked as potential as the detection doesn't check for the workaround mentioned by the vendor.
Successful exploitation of this vulnerability may allow authenticated attacker to cause the broadband edge service manager daemon (bbe-smgd) to crash upon execution of specific CLI commands, creating a Denial of Service (DoS) condition.
Workaround:
Use access lists or firewall filters to limit access to the CLI only from trusted hosts and administrators.
- JSA79109 -
supportportal.juniper.net/JSA79109
CVEs related to QID 44198
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| JSA79109 |
|