PT-2024-4449 · Juniper Networks · Junos
Published
2024-07-01
·
Updated
2026-01-22
·
CVE-2024-21586
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
Junos OS on SRX Series versions 21.4 through 21.4R3-S7.9
Junos OS on SRX Series versions 22.1 through 22.1R3-S5.3
Junos OS on SRX Series versions 22.2 through 22.2R3-S4.11
Junos OS on SRX Series versions 22.3 through 22.3R3
Junos OS on SRX Series versions 22.4 through 22.4R3
Junos OS on NFX Series versions 21.4 through 21.4R3-S8
Junos OS on NFX Series versions 22.1 through 22.1R1
Junos OS on NFX Series versions 22.2 through 22.2R3-S5
Junos OS on NFX Series versions 22.3 through 22.3R3
Junos OS on NFX Series versions 22.4 through 22.4R3
Description
An Improper Check for Unusual or Exceptional Conditions issue in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS). If an affected device receives specific valid traffic destined to the device, it will cause the PFE to crash and restart, creating a sustained DoS condition.
Recommendations
For Junos OS on SRX Series versions 21.4 through 21.4R3-S7.9, update to version 21.4R3-S7.9 or later.
For Junos OS on SRX Series versions 22.1 through 22.1R3-S5.3, update to version 22.1R3-S5.3 or later.
For Junos OS on SRX Series versions 22.2 through 22.2R3-S4.11, update to version 22.2R3-S4.11 or later.
For Junos OS on SRX Series versions 22.3 through 22.3R3, update to version 22.3R3 or later.
For Junos OS on SRX Series versions 22.4 through 22.4R3, update to version 22.4R3 or later.
For Junos OS on NFX Series versions 21.4 through 21.4R3-S8, update to version 21.4R3-S8 or later.
For Junos OS on NFX Series versions 22.1 through 22.1R1, update to a version after 22.1R1.
For Junos OS on NFX Series versions 22.2 through 22.2R3-S5, update to version 22.2R3-S5 or later.
For Junos OS on NFX Series versions 22.3 through 22.3R3, update to version 22.3R3 or later.
For Junos OS on NFX Series versions 22.4 through 22.4R3, update to version 22.4R3 or later.
Fix
DoS
Improper Check for Exceptional Conditions
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Junos