PT-2024-4449 · Juniper Networks · Junos

Published

2024-07-01

·

Updated

2026-01-22

·

CVE-2024-21586

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Junos OS on SRX Series versions 21.4 through 21.4R3-S7.9 Junos OS on SRX Series versions 22.1 through 22.1R3-S5.3 Junos OS on SRX Series versions 22.2 through 22.2R3-S4.11 Junos OS on SRX Series versions 22.3 through 22.3R3 Junos OS on SRX Series versions 22.4 through 22.4R3 Junos OS on NFX Series versions 21.4 through 21.4R3-S8 Junos OS on NFX Series versions 22.1 through 22.1R1 Junos OS on NFX Series versions 22.2 through 22.2R3-S5 Junos OS on NFX Series versions 22.3 through 22.3R3 Junos OS on NFX Series versions 22.4 through 22.4R3
Description An Improper Check for Unusual or Exceptional Conditions issue in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS). If an affected device receives specific valid traffic destined to the device, it will cause the PFE to crash and restart, creating a sustained DoS condition.
Recommendations For Junos OS on SRX Series versions 21.4 through 21.4R3-S7.9, update to version 21.4R3-S7.9 or later. For Junos OS on SRX Series versions 22.1 through 22.1R3-S5.3, update to version 22.1R3-S5.3 or later. For Junos OS on SRX Series versions 22.2 through 22.2R3-S4.11, update to version 22.2R3-S4.11 or later. For Junos OS on SRX Series versions 22.3 through 22.3R3, update to version 22.3R3 or later. For Junos OS on SRX Series versions 22.4 through 22.4R3, update to version 22.4R3 or later. For Junos OS on NFX Series versions 21.4 through 21.4R3-S8, update to version 21.4R3-S8 or later. For Junos OS on NFX Series versions 22.1 through 22.1R1, update to a version after 22.1R1. For Junos OS on NFX Series versions 22.2 through 22.2R3-S5, update to version 22.2R3-S5 or later. For Junos OS on NFX Series versions 22.3 through 22.3R3, update to version 22.3R3 or later. For Junos OS on NFX Series versions 22.4 through 22.4R3, update to version 22.4R3 or later.

Fix

DoS

Improper Check for Exceptional Conditions

Weakness Enumeration

Related Identifiers

BDU:2024-04951
CVE-2024-21586

Affected Products

Junos