#VU75107 Improper Check or Handling of Exceptional Conditions in Juniper Junos OS - CVE-2023-28959


Vulnerability identifier: #VU75107

Vulnerability risk: Medium

CVSSv4.0: 4.9 [CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:U/U:Green]

CVE-ID: CVE-2023-28959

CWE-ID: CWE-703

Exploitation vector: Local network

Exploit availability: No

Vulnerable software:
Juniper Junos OS
Operating systems & Components / Operating system

Vendor: Juniper Networks, Inc.

Description

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to an error when processing network packets. A remote attacker on the local broadcast domain can send a malformed packet to the device, causing all PFEs other than the inbound PFE to wedge and to eventually restart.

Mitigation
Install updates from vendor's website.

Vulnerable software versions

Juniper Junos OS: 19.4R1-S1 - 19.4, 20.2R1-S1 - 20.2, 20.4R1-S1 - 20.4, 21.1R1-S1 - 21.1, 21.2R1-S1 - 21.2R3, 21.3R1-S1 - 21.3R3, 21.4R1-S1 - 21.4R3, 22.1R1-S1 - 22.1R3, 22.2R1-S1 - 22.2R2, 22.3R1-S1 - 22.3R1


External links
https://supportportal.juniper.net/s/article/2023-04-Security-Bulletin-Junos-OS-QFX10002-PFE-wedges-and-restarts-upon-receipt-of-specific-malformed-packets-CVE-2023-28959


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the local network (LAN).

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.


Latest bulletins with this vulnerability