An Allocation of Resources Without Limits or Throttling vulnerability in Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause Denial of Service (DoS).
On all Junos OS QFX5000 Series and EX4000 Series platforms, when a high number of VLANs are configured, a specific DHCP packet will cause PFE hogging which will lead to dropping of socket connections.
This issue affects:
Juniper Networks Junos OS on QFX5000 Series and EX4000 Series
* 21.1 versions prior to 21.1R3-S5;
* 21.2 versions prior to 21.2R3-S5;
* 21.3 versions prior to 21.3R3-S5;
* 21.4 versions prior to 21.4R3-S4;
* 22.1 versions prior to 22.1R3-S3;
* 22.2 versions prior to 22.2R3-S1;
* 22.3 versions prior to 22.3R2-S2, 22.3R3;
* 22.4 versions prior to 22.4R2.
This issue does not affect Juniper Networks Junos OS versions prior to 21.1R1
References
Link | Resource |
---|---|
https://supportportal.juniper.net/JSA73155 | Vendor Advisory |
https://supportportal.juniper.net/JSA73155 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 08:25
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2023-10-13 00:15
Updated : 2024-11-21 08:25
NVD link : CVE-2023-44191
Mitre link : CVE-2023-44191
CVE.ORG link : CVE-2023-44191
JSON object : View
Products Affected
juniper
- qfk5700
- ex4300
- ex4400_multigigabit
- ex2300_multigigabit
- ex4100-f
- ex4600
- ex4650
- ex4400-24x
- qfk5230
- ex4300_multigigabit
- ex4400
- ex2300
- qfk5120
- qfk5110
- junos
- qfk5210
- qfk5220
- ex9200
- ex3400
- ex4100
- qfk5130
- ex4100_multigigabit
- ex2300-c
- ex9250
- qfk5200
CWE
CWE-770
Allocation of Resources Without Limits or Throttling