NA

CVE-2023-36841

Published: 12/10/2023 Updated: 17/10/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS on MX Series allows a unauthenticated network-based malicious user to cause an infinite loop, resulting in a Denial of Service (DoS). An attacker who sends malformed TCP traffic via an interface configured with PPPoE, causes an infinite loop on the respective PFE. This results in consuming all resources and a manual restart is needed to recover. This issue affects interfaces with PPPoE configured and tcp-mss enabled. This issue affects Juniper Networks Junos OS * All versions before 20.4R3-S7; * 21.1 version 21.1R1 and later versions; * 21.2 versions before 21.2R3-S6; * 21.3 versions before 21.3R3-S5; * 21.4 versions before 21.4R3-S3; * 22.1 versions before 22.1R3-S4; * 22.2 versions before 22.2R3; * 22.3 versions before 22.3R2-S2; * 22.4 versions before 22.4R2;

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

juniper junos 20.4

juniper junos 21.1

juniper junos 21.2

juniper junos 21.3

juniper junos 21.4

juniper junos 22.1

juniper junos 22.2

juniper junos 22.3

juniper junos

juniper junos 22.4