7.5
CVSSv3

CVE-2023-44191

Published: 13/10/2023 Updated: 20/10/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

An Allocation of Resources Without Limits or Throttling vulnerability in Juniper Networks Junos OS allows an unauthenticated, network-based malicious user to cause Denial of Service (DoS). On all Junos OS QFX5000 Series and EX4000 Series platforms, when a high number of VLANs are configured, a specific DHCP packet will cause PFE hogging which will lead to dropping of socket connections. This issue affects: Juniper Networks Junos OS on QFX5000 Series and EX4000 Series * 21.1 versions before 21.1R3-S5; * 21.2 versions before 21.2R3-S5; * 21.3 versions before 21.3R3-S5; * 21.4 versions before 21.4R3-S4; * 22.1 versions before 22.1R3-S3; * 22.2 versions before 22.2R3-S1; * 22.3 versions before 22.3R2-S2, 22.3R3; * 22.4 versions before 22.4R2. This issue does not affect Juniper Networks Junos OS versions before 21.1R1

Vulnerable Product Search on Vulmon Subscribe to Product

juniper junos 21.1

juniper junos 21.2

juniper junos 21.3

juniper junos 21.4

juniper junos 22.1

juniper junos 22.2

juniper junos 22.3

juniper junos 22.4