← Back

CVE-2022-22207

nvd nist
Published: Jul 20, 2022Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

A Use After Free vulnerability in the Advanced Forwarding Toolkit (AFT) manager process (aftmand) of Juniper Networks Junos OS allows an unauthenticated networked attacker to cause a kernel crash due to intensive polling of Abstracted Fabric (AF) interface statistics and thereby a Denial of Service (DoS). Continued gathering of AF interface statistics will create a sustained Denial of Service (DoS) condition. This issue affects Juniper Networks Junos OS on MX Series: 20.1 versions later than 20.1R1; 20.2 versions prior to 20.2R3-S5; 20.3 versions prior to 20.3R3-S4; 20.4 versions prior to 20.4R3; 21.1 versions prior to 21.1R2; 21.2 versions prior to 21.2R2.

Affected (48)

Products: Juniper: Junos
1 product
Junos
Configuration A
48 vulnerable · 17 platform
Vulnerable SoftwareAffected Versions
Juniper
Version 20.1 r1-s1
Version 20.1 r1-s2
Version 20.1 r1-s3
Version 20.1 r1-s4
Version 20.1 r2-s1
Version 20.1 r2-s2
Version 20.1 r2
Version 20.1 r3-s1
Version 20.1 r3-s2
Version 20.1 r3-s3
Version 20.1 r3
Version 20.2
Version 20.2 r1-s1
Version 20.2 r1-s2
Version 20.2 r1-s3
Version 20.2 r1
Version 20.2 r2-s1
Version 20.2 r2-s2
Version 20.2 r2-s3
Version 20.2 r2
Version 20.2 r3-s1
Version 20.2 r3-s2
Version 20.2 r3-s3
Version 20.2 r3-s4
Version 20.2 r3
Version 20.3
Version 20.3 r1-s1
Version 20.3 r1-s2
Version 20.3 r1
Version 20.3 r2-s1
Version 20.3 r2
Version 20.3 r3-s1
Version 20.3 r3-s2
Version 20.3 r3-s3
Version 20.3 r3
Version 20.4
Version 20.4 r1-s1
Version 20.4 r1
Version 20.4 r2-s1
Version 20.4 r2-s2
Version 20.4 r2
Version 21.1
Version 21.1 r1-s1
Version 21.1 r1
Version 21.2
Version 21.2 r1-s1
Version 21.2 r1-s2
Version 21.2 r1
Running on/withPlatform Versions
Juniper
Mx10
All versions
Juniper
Mx10000
All versions
Juniper
Mx10003
All versions
Juniper
Mx10008
All versions
Juniper
Mx10016
All versions
Juniper
Mx104
All versions
Juniper
Mx150
All versions
Juniper
Mx2008
All versions
Juniper
Mx2010
All versions
Juniper
Mx2020
All versions
Juniper
Mx204
All versions
Juniper
Mx240
All versions
Juniper
Mx40
All versions
Juniper
Mx480
All versions
Juniper
Mx5
All versions
Juniper
Mx80
All versions
Juniper
Mx960
All versions

References (2)

Source: sirt@juniper.net
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.