PT-2024-3168 · Juniper Networks · Containerized Routing Protocol Daemon+1

Published

2024-04-10

·

Updated

2024-05-16

·

CVE-2024-30407

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Juniper Cloud Native Router (JCNR) versions prior to 23.4 Containerized Routing Protocol Daemon (cRPD) versions prior to 23.4R1
Description: The issue is related to the use of hard-coded cryptographic keys in Juniper Cloud Native Router (JCNR) and Containerized Routing Protocol Daemon (cRPD) products. This allows an attacker to perform Person-in-the-Middle (PitM) attacks, resulting in the complete compromise of the container. The presence of hard-coded SSH host keys on the container enables a PitM attacker to intercept SSH traffic without being detected.
Recommendations: For Juniper Cloud Native Router (JCNR) versions prior to 23.4, update to version 23.4 or later. For Containerized Routing Protocol Daemon (cRPD) versions prior to 23.4R1, update to version 23.4R1 or later. As a temporary workaround, consider restricting access to the SSH service until a patch is available.

Fix

Weakness Enumeration

Related Identifiers

BDU:2024-03381
CVE-2024-30407

Affected Products

Containerized Routing Protocol Daemon
Juniper Cloud Native Router