← Back

CVE-2021-0285

nvd nist
Published: Jul 15, 2021Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: sirt@juniper.net (Secondary)

Description

An uncontrolled resource consumption vulnerability in Juniper Networks Junos OS on QFX5000 Series and EX4600 Series switches allows an attacker sending large amounts of legitimate traffic destined to the device to cause Interchassis Control Protocol (ICCP) interruptions, leading to an unstable control connection between the Multi-Chassis Link Aggregation Group (MC-LAG) nodes which can in turn lead to traffic loss. Continued receipt of this amount of traffic will create a sustained Denial of Service (DoS) condition. An indication that the system could be impacted by this issue is the following log message: "DDOS_PROTOCOL_VIOLATION_SET: Warning: Host-bound traffic for protocol/exception LOCALNH:aggregate exceeded its allowed bandwidth at fpc <fpc number> for <n> times, started at <timestamp>" This issue affects Juniper Networks Junos OS on QFX5000 Series and EX4600 Series: 15.1 versions prior to 15.1R7-S9; 17.3 versions prior to 17.3R3-S11; 17.4 versions prior to 17.4R2-S13, 17.4R3-S5; 18.3 versions prior to 18.3R3-S5; 18.4 versions prior to 18.4R2-S8, 18.4R3-S7; 19.1 versions prior to 19.1R3-S5; 19.2 versions prior to 19.2R1-S6, 19.2R3-S2; 19.3 versions prior to 19.3R2-S6, 19.3R3-S2; 19.4 versions prior to 19.4R1-S4, 19.4R2-S4, 19.4R3-S2; 20.1 versions prior to 20.1R2-S2, 20.1R3; 20.2 versions prior to 20.2R2-S3, 20.2R3; 20.3 versions prior to 20.3R2; 20.4 versions prior to 20.4R1-S1, 20.4R2.

Affected (210)

Products: Juniper: Junos
1 product
Junos
Configuration A
210 vulnerable · 45 platform
Vulnerable SoftwareAffected Versions
Juniper
Version 15.1
Version 15.1 a1
Version 15.1 f1
Version 15.1 f2-s1
Version 15.1 f2-s2
Version 15.1 f2-s3
Version 15.1 f2-s4
Version 15.1 f2
Version 15.1 f3
Version 15.1 f4
Version 15.1 f5-s7
Version 15.1 f5
Version 15.1 f6-s10
Version 15.1 f6-s12
Version 15.1 f6-s1
Version 15.1 f6-s2
Version 15.1 f6-s3
Version 15.1 f6-s4
Version 15.1 f6-s5
Version 15.1 f6-s6
Version 15.1 f6-s7
Version 15.1 f6-s8
Version 15.1 f6-s9
Version 15.1 f6
Version 15.1 f7
Version 15.1 f
Version 15.1 r1
Version 15.1 r2
Version 15.1 r3
Version 15.1 r4-s7
Version 15.1 r4-s8
Version 15.1 r4-s9
Version 15.1 r4
Version 15.1 r5-s1
Version 15.1 r5-s3
Version 15.1 r5-s5
Version 15.1 r5-s6
Version 15.1 r5
Version 15.1 r6-s1
Version 15.1 r6-s2
Version 15.1 r6-s3
Version 15.1 r6-s4
Version 15.1 r6-s6
Version 15.1 r6
Version 15.1 r7-s1
Version 15.1 r7-s2
Version 15.1 r7-s3
Version 15.1 r7-s4
Version 15.1 r7-s5
Version 15.1 r7-s6
Version 15.1 r7-s7
Version 15.1 r7-s8
Version 15.1 r7
Version 15.1 r
Version 17.3
Version 17.3 r1-s1
Version 17.3 r1-s4
Version 17.3 r1
Version 17.3 r2-s1
Version 17.3 r2-s2
Version 17.3 r2-s3
Version 17.3 r2-s4
Version 17.3 r2-s5
Version 17.3 r2
Version 17.3 r3-s10
Version 17.3 r3-s1
Version 17.3 r3-s2
Version 17.3 r3-s3
Version 17.3 r3-s4
Version 17.3 r3-s5
Version 17.3 r3-s6
Version 17.3 r3-s7
Version 17.3 r3-s8
Version 17.3 r3-s9
Version 17.3 r3
Version 17.3 r3
Version 17.4
Version 17.4 r1-s1
Version 17.4 r1-s2
Version 17.4 r1-s3
Version 17.4 r1-s4
Version 17.4 r1-s5
Version 17.4 r1-s6
Version 17.4 r1-s7
Version 17.4 r1
Version 17.4 r2-s10
Version 17.4 r2-s11
Version 17.4 r2-s12
Version 17.4 r2-s1
Version 17.4 r2-s2
Version 17.4 r2-s3
Version 17.4 r2-s4
Version 17.4 r2-s5
Version 17.4 r2-s6
Version 17.4 r2-s7
Version 17.4 r2-s8
Version 17.4 r2-s9
Version 17.4 r2
Version 17.4 r3-s1
Version 17.4 r3-s2
Version 17.4 r3-s3
Version 17.4 r3-s4
Version 17.4 r3
Version 18.3
Version 18.3 r1-s1
Version 18.3 r1-s2
Version 18.3 r1-s3
Version 18.3 r1-s4
Version 18.3 r1-s5
Version 18.3 r1-s6
Version 18.3 r1
Version 18.3 r2-s1
Version 18.3 r2-s2
Version 18.3 r2-s3
Version 18.3 r2-s4
Version 18.3 r2
Version 18.3 r3-s1
Version 18.3 r3-s2
Version 18.3 r3-s3
Version 18.3 r3-s4
Version 18.3 r3
Version 18.4
Version 18.4 r1-s1
Version 18.4 r1-s2
Version 18.4 r1-s3
Version 18.4 r1-s4
Version 18.4 r1-s5
Version 18.4 r1-s6
Version 18.4 r1-s7
Version 18.4 r1
Version 18.4 r2-s1
Version 18.4 r2-s2
Version 18.4 r2-s3
Version 18.4 r2-s4
Version 18.4 r2-s5
Version 18.4 r2-s6
Version 18.4 r2-s7
Version 18.4 r2
Version 18.4 r3-s1
Version 18.4 r3-s2
Version 18.4 r3-s3
Version 18.4 r3-s4
Version 18.4 r3-s5
Version 18.4 r3-s6
Version 18.4 r3
Version 19.1
Version 19.1 r1-s1
Version 19.1 r1-s2
Version 19.1 r1-s3
Version 19.1 r1-s4
Version 19.1 r1-s5
Version 19.1 r1-s6
Version 19.1 r1
Version 19.1 r2-s1
Version 19.1 r2-s2
Version 19.1 r2
Version 19.1 r3-s1
Version 19.1 r3-s2
Version 19.1 r3-s3
Version 19.1 r3-s4
Version 19.1 r3
Version 19.2
Version 19.2 r1-s1
Version 19.2 r1-s2
Version 19.2 r1-s3
Version 19.2 r1-s4
Version 19.2 r1-s5
Version 19.2 r1
Version 19.2 r2-s1
Version 19.2 r2
Version 19.2 r3-s1
Version 19.2 r3
Version 19.3
Version 19.3 r1-s1
Version 19.3 r1
Version 19.3 r2-s1
Version 19.3 r2-s2
Version 19.3 r2-s3
Version 19.3 r2-s4
Version 19.3 r2-s5
Version 19.3 r2
Version 19.3 r3-s1
Version 19.3 r3
Version 19.4 r1-s1
Version 19.4 r1-s2
Version 19.4 r1-s3
Version 19.4 r1
Version 19.4 r2-s1
Version 19.4 r2-s2
Version 19.4 r2-s3
Version 19.4 r2
Version 19.4 r3-s1
Version 19.4 r3
Version 20.1 r1-s1
Version 20.1 r1-s2
Version 20.1 r1-s3
Version 20.1 r1-s4
Version 20.1 r1
Version 20.1 r2-s1
Version 20.1 r2
Version 20.2 r1-s1
Version 20.2 r1-s2
Version 20.2 r1-s3
Version 20.2 r1
Version 20.2 r2-s1
Version 20.2 r2-s2
Version 20.2 r2
Version 20.3 r1-s1
Version 20.3 r1
Version 20.4 r1
Running on/withPlatform Versions
Juniper
Ex4200
All versions
Juniper
Ex4200 Vc
All versions
Juniper
Ex4300
All versions
Juniper
Ex4300 24p
All versions
Juniper
Ex4300 24p S
All versions
Juniper
Ex4300 24t
All versions
Juniper
Ex4300 24t S
All versions
Juniper
Ex4300 32f
All versions
Juniper
Ex4300 32f Dc
All versions
Juniper
Ex4300 32f S
All versions
Juniper
Ex4300 48mp
All versions
Juniper
Ex4300 48mp S
All versions
Juniper
Ex4300 48p
All versions
Juniper
Ex4300 48p S
All versions
Juniper
Ex4300 48t
All versions
Juniper
Ex4300 48t Afi
All versions
Juniper
Ex4300 48t Dc
All versions
Juniper
Ex4300 48t Dc Afi
All versions
Juniper
Ex4300 48t S
All versions
Juniper
Ex4300 48tafi
All versions
Juniper
Ex4300 48tdc
All versions
Juniper
Ex4300 48tdc Afi
All versions
Juniper
Ex4300 Mp
All versions
Juniper
Ex4300 Vc
All versions
Juniper
Ex4300m
All versions
Juniper
Ex4400
All versions
Juniper
Ex4500
All versions
Juniper
Ex4500 Vc
All versions
Juniper
Ex4550
All versions
Juniper
Ex4550 Vc
All versions
Juniper
Ex4550/vc
All versions
Juniper
Ex4600
All versions
Juniper
Ex4600 Vc
All versions
Juniper
Ex4650
All versions
Juniper
Qfx5100
All versions
Juniper
Qfx5100 96s
All versions
Juniper
Qfx5110
All versions
Juniper
Qfx5120
All versions
Juniper
Qfx5130
All versions
Juniper
Qfx5200
All versions
Juniper
Qfx5200 32c
All versions
Juniper
Qfx5200 48y
All versions
Juniper
Qfx5210
All versions
Juniper
Qfx5210 64c
All versions
Juniper
Qfx5220
All versions

References (2)

Source: sirt@juniper.net
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.