PT-2022-3821 · Juniper Networks · Junos Evolved
Published
2022-07-13
·
Updated
2022-07-30
·
CVE-2022-22212
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Juniper Networks Junos OS Evolved versions 21.2 through 21.2R3-EVO
Juniper Networks Junos OS Evolved versions 21.3 through 21.3R2-EVO
Description
An Allocation of Resources Without Limits or Throttling issue in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved allows an unauthenticated network-based attacker to cause a Denial of Service (DoS). On all Junos Evolved platforms, hostbound protocols will be impacted by a high rate of specific hostbound traffic from ports on a PFE. Continued receipt of this amount of traffic will create a sustained Denial of Service (DoS) condition.
Recommendations
For Juniper Networks Junos OS Evolved versions 21.2 through 21.2R3-EVO, update to version 21.2R3-EVO or later.
For Juniper Networks Junos OS Evolved versions 21.3 through 21.3R2-EVO, update to version 21.3R2-EVO or later.
As a temporary workaround, consider restricting the amount of hostbound traffic from ports on a PFE to minimize the risk of exploitation.
Fix
Allocation of Resources Without Limits
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Junos Evolved