SB2023011183 - Improper check or handling of exceptional conditions in Juniper Junos OS
Published: January 11, 2023
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 1 security vulnerability.
1) Improper check or handling of exceptional conditions (CVE-ID: CVE-2023-22413)
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper check or handling of exceptional conditions error in the IPsec library. A remote non-authenticated attacker can cause Denial of Service (DoS).
On all MX platforms with MS-MPC or MS-MIC card, when specific IPv4 packets are processed by an IPsec6 tunnel, the Multiservices PIC Management Daemon (mspmand) process will core and restart.
This will lead to FPC crash.
Remediation
Install update from vendor's website.