259
VMScore

CVE-2022-22176

Published: 19/01/2022 Updated: 26/01/2022
CVSS v2 Base Score: 2.9 | Impact Score: 2.9 | Exploitability Score: 5.5
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 259
Vector: AV:A/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

An Improper Validation of Syntactic Correctness of Input vulnerability in the Juniper DHCP daemon (jdhcpd) of Juniper Networks Junos OS allows an adjacent unauthenticated attacker sending a malformed DHCP packet to cause a crash of jdhcpd and thereby a Denial of Service (DoS). If option-82 is configured in a DHCP snooping / -security scenario, jdhcpd crashes if a specific malformed DHCP request packet is received. The DHCP functionality is impacted while jdhcpd restarts, and continued exploitation of the vulnerability will lead to the unavailability of the DHCP service and thereby a sustained DoS. This issue affects Juniper Networks Junos OS 13.2 version 13.2R1 and later versions before 15.1R7-S11; 18.3 versions before 18.3R3-S6; 18.4 versions before 18.4R2-S9, 18.4R3-S10; 19.1 versions before 19.1R2-S3, 19.1R3-S7; 19.2 versions before 19.2R1-S8, 19.2R3-S4; 19.3 versions before 19.3R2-S7, 19.3R3-S4; 19.4 versions before 19.4R3-S6; 20.1 versions before 20.1R3-S3; 20.2 versions before 20.2R3-S3; 20.3 versions before 20.3R3-S1; 20.4 versions before 20.4R3; 21.1 versions before 21.1R2-S1, 21.1R3; 21.2 versions before 21.2R1-S1, 21.2R2. This issue does not affect Juniper Networks Junos OS version 12.3R12 and prior versions.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

juniper junos 13.2

juniper junos 13.2x51

juniper junos 13.2x52

juniper junos 13.3

juniper junos 13.3r9

juniper junos 14.1

juniper junos 14.1r7

juniper junos 14.1x50

juniper junos 14.1x51

juniper junos 14.1x53

juniper junos 14.1x53-d10

juniper junos 14.1x53-d15

juniper junos 14.1x53-d25

juniper junos 14.1x53-d26

juniper junos 14.1x53-d27

juniper junos 14.1x53-d30

juniper junos 14.1x53-d35

juniper junos 14.1x55

juniper junos 14.2

juniper junos 14.2r6

juniper junos 15.1

juniper junos 18.3

juniper junos 18.4

juniper junos 19.1

juniper junos 19.2

juniper junos 19.3

juniper junos 19.4

juniper junos 20.1

juniper junos 20.2

juniper junos 20.3

juniper junos 20.4

juniper junos 21.1

juniper junos 21.2