CVE-2024-47506
EUVD-2024-4250911.10.2024, 16:15
A Deadlock vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). When a large amount of traffic is processed by ATP Cloud inspection, a deadlock can occur which will result in a PFE crash and restart. Whether the crash occurs, depends on system internal timing that is outside the attackers control. This issue affects Junos OS on SRX Series: * All versions before 21.3R3-S1, * 21.4 versions before 21.4R3, * 22.1 versions before 22.1R2, * 22.2 versions before 22.2R1-S2, 22.2R2.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| juniper | junos | 𝑥 < 21.3 |
| juniper | junos | 21.3 |
| juniper | junos | 21.3:r1 |
| juniper | junos | 21.3:r1-s1 |
| juniper | junos | 21.3:r1-s2 |
| juniper | junos | 21.3:r2 |
| juniper | junos | 21.3:r2-s1 |
| juniper | junos | 21.3:r2-s2 |
| juniper | junos | 21.3:r3 |
| juniper | junos | 21.4 |
| juniper | junos | 21.4:r1 |
| juniper | junos | 21.4:r1-s1 |
| juniper | junos | 21.4:r1-s2 |
| juniper | junos | 21.4:r2 |
| juniper | junos | 21.4:r2-s1 |
| juniper | junos | 21.4:r2-s2 |
| juniper | junos | 22.1 |
| juniper | junos | 22.1:r1 |
| juniper | junos | 22.1:r1-s1 |
| juniper | junos | 22.1:r1-s2 |
| juniper | junos | 22.2 |
| juniper | junos | 22.2:r1 |
| juniper | junos | 22.2:r1-s1 |
| juniper | junos | 22.2:r2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration