VendorsJuniperjunos_os_evolved21.3
Vulnerabilities

Juniper JUNOS OS Evolved 21.3

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

61CVEs
CVE-2022-22239
Junos OS Evolved: The ssh CLI command always runs as root which can lead to privilege escalation
Published 2022-10-18 · Modified
8.8EPSS 0.002
CVE-2024-30382
Junos OS and Junos OS Evolved: RPD crash when CoS-based forwarding (CBF) policy is configured
Published 2024-04-12 · Analyzed
8.7EPSS 0.007
CVE-2024-39552
Junos OS and Junos OS Evolved: Malformed BGP UPDATE causes RPD crash
Published 2024-07-11 · Analyzed
8.7EPSS 0.006
CVE-2024-21598
Junos OS and Junos OS Evolved: A malformed BGP tunnel encapsulation attribute will lead to an rpd crash
Published 2024-04-12 · Analyzed
8.7EPSS 0.006
CVE-2024-30395
Junos OS and Junos OS Evolved: A malformed BGP tunnel encapsulation attribute will lead to an rpd crash
Published 2024-04-12 · Analyzed
8.7EPSS 0.005
CVE-2023-28960
Junos OS Evolved: Docker repository is world-writeable, allowing low-privileged local user to inject files into Docker containers
Published 2023-04-17 · Modified
8.2EPSS 0.002
CVE-2022-22195
Junos OS Evolved: Specific packets reaching the RE lead to a counter overflow and eventually a crash
Published 2022-04-14 · Modified
7.8EPSS 0.011
CVE-2022-22183
Junos OS Evolved: A remote attacker may cause a CPU Denial of Service by sending genuine traffic to a device on a specific IPv4 port.
Published 2022-04-14 · Modified
7.8EPSS 0.010
CVE-2023-28966
Junos OS Evolved: Local low-privileged user with shell access can execute CLI commands as root
Published 2023-04-17 · Modified
7.8EPSS 0.002
CVE-2023-4481
Junos OS and Junos OS Evolved: A crafted BGP UPDATE message allows a remote attacker to de-peer (reset) BGP sessions (CVE-2023-4481)
Published 2023-08-31 · Modified
7.5EPSS 0.182
CVE-2022-22177
Junos OS and Junos OS Evolved: After receiving a specific number of crafted packets snmpd will segmentation fault (SIGSEGV) requiring a manual restart.
Published 2022-01-19 · Modified
7.5EPSS 0.010
CVE-2022-22212
Junos OS Evolved: A high rate of specific hostbound traffic will cause unexpected hostbound traffic delays or drops
Published 2022-07-20 · Modified
7.5EPSS 0.008
CVE-2022-22192
Junos OS Evolved: PTX Series: An attacker can cause a kernel panic by sending a malformed TCP packet to the device
Published 2022-10-18 · Modified
7.5EPSS 0.008
CVE-2022-22211
Junos OS Evolved: PTX Series: Multiple FPCs become unreachable due to continuous polling of specific SNMP OID
Published 2022-10-18 · Modified
7.5EPSS 0.007
CVE-2023-28982
Junos OS and Junos OS Evolved: In a BGP rib sharding scenario when a route is frequently updated an rpd memory leak will occur
Published 2023-04-17 · Modified
7.5EPSS 0.006
CVE-2023-0026
2023-06: Out-of-Cycle Security Bulletin: Junos OS and Junos OS Evolved: A BGP session will flap upon receipt of a specific, optional transitive attribute
Published 2023-06-21 · Modified
7.5EPSS 0.006
CVE-2022-22247
Junos OS Evolved: Kernel processing of unvalidated TCP segments could lead to a Denial of Service (DoS)
Published 2022-10-18 · Modified
7.5EPSS 0.006
CVE-2023-28967
Junos OS and Junos OS Evolved: An attacker sending genuine BGP packets causes an RPD crash
Published 2023-04-17 · Modified
7.5EPSS 0.006
CVE-2023-22400
Junos OS Evolved: A specific SNMP GET operation and a specific CLI commands cause resources to leak and eventually the evo-pfemand process will crash
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-22401
Junos OS and Junos OS Evolved: PTX10008, PTX10016: When a specific SNMP MIB is queried the FPC will crash
Published 2023-01-12 · Modified
7.5EPSS 0.006
CVE-2023-44186
Junos OS and Junos OS Evolved: RPD crash when attempting to send a very long AS PATH to a non-4-byte-AS capable BGP neighbor
Published 2023-10-11 · Modified
7.5EPSS 0.005
CVE-2024-21612
Junos OS Evolved: Specific TCP traffic causes OFP core and restart of RE
Published 2024-01-12 · Modified
7.5EPSS 0.005
CVE-2023-44197
Junos OS and Junos OS Evolved: An rpd crash may occur when BGP is processing newly learned routes
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2023-44185
Junos OS and Junos OS Evolved: In an BGP scenario RPD crashes upon receiving and processing a specific malformed ISO VPN BGP UPDATE packet
Published 2023-10-12 · Modified
7.5EPSS 0.005
CVE-2024-39548
Junos OS Evolved: Receipt of specific packets in the aftmand process will lead to a memory leak
Published 2024-07-11 · Analyzed
7.5EPSS 0.005
CVE-2022-22248
Junos OS Evolved: Incorrect file permissions can allow low-privileged user to cause another user to execute arbitrary commands
Published 2022-10-18 · Modified
7.3EPSS 0.002
CVE-2024-47508
Junos OS Evolved: Specific low privileged CLI commands and SNMP GET requests can trigger a resource leak #2
Published 2024-10-11 · Analyzed
7.1EPSS 0.004
CVE-2024-30380
Junos OS and Junos OS Evolved: l2cpd crash upon receipt of a specific TLV
Published 2024-04-16 · Analyzed
7.1EPSS 0.003
CVE-2024-30386
Junos OS and Junos OS Evolved: In a EVPN-VXLAN scenario state changes on adjacent systems can cause an l2ald process crash
Published 2024-04-12 · Analyzed
7.1EPSS 0.003
CVE-2023-28973
Junos OS Evolved: The 'sysmanctl' shell command allows a local user to gain access to some administrative actions
Published 2023-04-17 · Modified
7.1EPSS 0.001
CVE-2024-39513
Junos OS Evolved: Execution of a specific CLI command will cause a crash in the AFT manager
Published 2024-07-10 · Analyzed
6.8EPSS 0.001
CVE-2022-22214
Junos OS and Junos OS Evolved: In an MPLS scenario upon receipt of a specific IPv6 packet an FPC will crash
Published 2022-07-20 · Modified
6.5EPSS 0.003
CVE-2023-36833
Junos OS Evolved: PTX10001-36MR, and PTX10004, PTX10008, PTX10016 with LC1201/1202: The aftman-bt process will crash in a MoFRR scenario after multiple link flaps
Published 2023-07-14 · Modified
6.5EPSS 0.003
CVE-2022-22230
Junos OS and Junos OS Evolved: RPD crash upon receipt of specific OSPFv3 LSAs
Published 2022-10-18 · Modified
6.5EPSS 0.003
CVE-2022-22250
Junos OS and Junos OS Evolved: An FPC crash might be seen due to an EVPN MAC entry moving from local to remote
Published 2022-10-18 · Modified
6.5EPSS 0.003
CVE-2023-28981
Junos OS and Junos OS Evolved: If malformed IPv6 router advertisements are received, memory corruption will occur which causes an rpd crash
Published 2023-04-17 · Modified
6.5EPSS 0.003
CVE-2022-22238
Junos OS and Junos OS Evolved: The rpd process will crash when a malformed incoming RESV message is processed
Published 2022-10-18 · Modified
6.5EPSS 0.003
CVE-2024-21613
Junos OS and Junos OS Evolved: A link flap causes patroot memory leak which leads to rpd crash
Published 2024-01-12 · Modified
6.5EPSS 0.003
CVE-2023-36839
Junos OS and Junos OS Evolved: An l2cpd crash will occur when specific LLDP packets are received
Published 2023-10-12 · Modified
6.5EPSS 0.003
CVE-2023-44196
Junos OS Evolved: PTX10003 Series: Packets which are not destined to the router can reach the RE
Published 2023-10-12 · Modified
6.5EPSS 0.002
1 / 2Next →