VendorsJuniperjunos21.3
Vulnerabilities

Juniper Junos 21.3

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

146CVEs
CVE-2023-22399
Junos OS: QFX10K Series: PFE crash upon receipt of specific genuine packets when sFlow is enabled
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-22408
Junos OS: SRX 5000 Series: Upon processing of a specific SIP packet an FPC can crash
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-28965
Junos OS: QFX10002: Failure of storm control feature may lead to Denial of Service
Published 2023-04-17 · Modified
7.5EPSS 0.006
CVE-2023-28967
Junos OS and Junos OS Evolved: An attacker sending genuine BGP packets causes an RPD crash
Published 2023-04-17 · Modified
7.5EPSS 0.006
CVE-2023-28976
Junos OS: MX Series: If a specific traffic rate goes above the DDoS threshold it will lead to an FPC crash
Published 2023-04-17 · Modified
7.5EPSS 0.006
CVE-2023-22393
Junos OS and Junos OS Evolved: RPD crash upon receipt of BGP route with invalid next-hop
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-22394
Junos OS: SRX Series and MX Series: Memory leak due to receipt of specially crafted SIP calls
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-22411
Junos OS: SRX Series: The flow processing daemon (flowd) will crash when Unified Policies are used with IPv6 and certain dynamic applications are rejected by the device
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-22396
Junos OS: Receipt of crafted TCP packets destined to the device results in MBUF leak leading to a Denial of Service (DoS)
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2024-21606
Junos OS: SRX Series: When "tcp-encap" is configured and specific packets are received flowd will crash
Published 2024-01-12 · Modified
7.5EPSS 0.006
CVE-2023-36843
Junos OS: SRX Series: The PFE will crash on receiving malformed SSL traffic when Sky ATP is enabled
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2023-44199
Junos OS: MX Series: In a PTP scenario a prolonged routing protocol churn can trigger an FPC reboot
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2023-44186
Junos OS and Junos OS Evolved: RPD crash when attempting to send a very long AS PATH to a non-4-byte-AS capable BGP neighbor
Published 2023-10-11 · Modified
7.5EPSS 0.005
CVE-2023-44181
Junos OS: QFX5k: l2 loop in the overlay impacts the stability in a EVPN/VXLAN environment
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2024-21616
Junos OS: MX Series and SRX Series: Processing of a specific SIP packet causes NAT IP allocation to fail
Published 2024-01-12 · Modified
7.5EPSS 0.005
CVE-2023-44185
Junos OS and Junos OS Evolved: In an BGP scenario RPD crashes upon receiving and processing a specific malformed ISO VPN BGP UPDATE packet
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2023-36841
Junos OS: MX Series: Receipt of malformed TCP traffic will cause a Denial of Service
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2023-44191
Junos OS: QFX5000 Series and EX4000 Series: Denial of Service (DoS) on a large scale VLAN due to PFE hogging
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2023-44197
Junos OS and Junos OS Evolved: An rpd crash may occur when BGP is processing newly learned routes
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2023-44192
Junos OS: QFX5000 Series: DMA memory leak is observed when specific DHCP packets are transmitted over pseudo-VTEP
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2023-44175
Junos OS and Junos OS Evolved: Receipt of a specific genuine PIM packet causes RPD crash
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2023-22412
Junos OS: MX Series and SRX Series: The flow processing daemon (flowd) will crash if the SIP ALG is enabled and specific SIP messages are processed
Published 2023-01-12 · Modified
7.5EPSS 0.005
CVE-2022-22218
Junos OS: SRX Series: Upon processing of a genuine packet the pkid process will crash during CMPv2 auto-re-enrollment
Published 2022-10-18 · Modified
7.5EPSS 0.004
CVE-2023-44198
Junos OS: SRX Series and MX Series: SIP ALG doesn't drop specifically malformed retransmitted SIP packets
Published 2023-10-12 · Modified
7.5EPSS 0.004
CVE-2023-28974
Junos OS: MX Series: In a BBE scenario upon receipt of specific malformed packets from subscribers the process bbe-smgd will crash
Published 2023-04-17 · Modified
7.4EPSS 0.003
CVE-2022-22186
Junos OS: EX4650 Series: Certain traffic received by the Junos OS device on the management interface may be forwarded to egress interfaces instead of discarded
Published 2022-04-14 · Modified
7.2EPSS 0.006
CVE-2024-30380
Junos OS and Junos OS Evolved: l2cpd crash upon receipt of a specific TLV
Published 2024-04-16 · Analyzed
7.1EPSS 0.003
CVE-2024-21609
Junos OS: MX Series with SPC3, and SRX Series: If specific IPsec parameters are negotiated iked will crash due to a memory leak
Published 2024-04-12 · Analyzed
7.1EPSS 0.003
CVE-2024-30386
Junos OS and Junos OS Evolved: In a EVPN-VXLAN scenario state changes on adjacent systems can cause an l2ald process crash
Published 2024-04-12 · Analyzed
7.1EPSS 0.003
CVE-2024-30387
Junos OS: ACX5448 & ACX710: Due to interface flaps the PFE process can crash
Published 2024-04-12 · Analyzed
7.1EPSS 0.002
CVE-2024-30378
Junos OS: MX Series: bbe-smgd process crash upon execution of specific CLI commands
Published 2024-04-16 · Analyzed
6.9EPSS 0.002
CVE-2021-25220
DNS forwarders - cache poisoning vulnerability
Published 2022-03-23 · Modified
6.8EPSS 0.034
CVE-2023-28972
Junos OS: NFX Series: 'set system ports console insecure' allows root password recovery
Published 2023-04-17 · Modified
6.8EPSS 0.004
CVE-2024-47501
Junos OS: MX304, MX with MPC10/11/LC9600, and EX9200 with EX9200-15C: In a VPLS or Junos Fusion scenario specific show commands cause FPCs to crash
Published 2024-10-11 · Analyzed
6.8EPSS 0.002
CVE-2023-22404
Junos OS: SRX Series and MX Series with SPC3: When IPsec VPN is configured iked will core when a specifically formatted payload is received
Published 2023-01-12 · Modified
6.5EPSS 0.006
CVE-2022-22202
Junos OS: PTX Series: FPCs may restart unexpectedly upon receipt of specific MPLS packets with certain multi-unit interface configurations
Published 2022-07-20 · Modified
6.5EPSS 0.005
CVE-2024-21603
Junos OS: MX Series: Gathering statistics in a scaled SCU/DCU configuration will lead to a device crash
Published 2024-01-12 · Modified
6.5EPSS 0.005
CVE-2023-44184
Junos OS and Junos OS Evolved: High CPU load due to specific NETCONF command
Published 2023-10-12 · Analyzed
6.5EPSS 0.005
CVE-2022-22249
Junos OS: MX Series: An FPC crash might be seen due to mac-moves within the same bridge domain
Published 2022-10-18 · Modified
6.5EPSS 0.005
CVE-2022-22237
Junos OS: Peers not configured for TCP-AO can establish a BGP or LDP session even if authentication is configured locally
Published 2022-10-18 · Modified
6.5EPSS 0.004
← Prev2 / 4Next →