Junos OS and Junos OS Evolved: In Point to MultiPoint (P2MP) scenarios receipt of various crafted packets causes RPD to core.
Description
In Point to MultiPoint (P2MP) scenarios within established sessions between network or adjacent neighbors the improper use of a source to destination copy write operation combined with a Stack-based Buffer Overflow on certain specific packets processed by the routing protocol daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved sent by a remote unauthenticated network attacker causes the RPD to crash causing a Denial of Service (DoS). Continued receipt and processing of these packets will create a sustained Denial of Service (DoS) condition. This issue affects: Juniper Networks Junos OS 19.2 versions prior to 19.2R3-S2; 19.3 versions prior to 19.3R2-S6, 19.3R3-S2; 19.4 versions prior to 19.4R1-S4, 19.4R2-S4, 19.4R3-S3; 20.1 versions prior to 20.1R2-S2, 20.1R3; 20.2 versions prior to 20.2R2-S3, 20.2R3; 20.3 versions prior to 20.3R2. This issue does not affect Juniper Networks Junos OS versions prior to 19.2R1. Juniper Networks Junos OS Evolved 20.1 versions prior to 20.1R3-EVO; 20.2 versions prior to 20.2R3-EVO; 20.3 versions prior to 20.3R2-EVO.
Affected products
320.1 before 20.1R3-EVO, 20.2 before 20.2R3-EVO, 20.3 before 20.3R2-EVO+ 1 more
- (no CPE)range: 20.1 before 20.1R3-EVO, 20.2 before 20.2R3-EVO, 20.3 before 20.3R2-EVO
- (no CPE)range: 20.1
- Range: 19.2 before 19.2R3-S2, 19.3 before 19.3R2-S6 or 19.3R3-S2, 19.4 before 19.4R1-S4 or 19.4R2-S4 or 19.4R3-S3, 20.1 before 20.1R2-S2 or 20.1R3, 20.2 before 20.2R2-S3 or 20.2R3, 20.3 before 20.3R2
Patches
Vulnerability mechanics
References
1- kb.juniper.net/JSA11251mitrex_refsource_CONFIRM
News mentions
0No linked articles in our index yet.