← Back

CVE-2022-22249

nvd nist
Published: Oct 18, 2022Modified: Nov 21, 2024

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 3.6
Source: sirt@juniper.net (Secondary)

Description

An Improper Control of a Resource Through its Lifetime vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on MX Series allows an unauthenticated adjacent attacker to cause a Denial of Service (DoS). When there is a continuous mac move a memory corruption causes one or more FPCs to crash and reboot. These MAC moves can be between two local interfaces or between core/EVPN and local interface. The below error logs can be seen in PFE syslog when this issue happens: xss_event_handler(1071): EA[0:0]_PPE 46.xss[0] ADDR Error. ppe_error_interrupt(4298): EA[0:0]_PPE 46 Errors sync xtxn error xss_event_handler(1071): EA[0:0]_PPE 1.xss[0] ADDR Error. ppe_error_interrupt(4298): EA[0:0]_PPE 1 Errors sync xtxn error xss_event_handler(1071): EA[0:0]_PPE 2.xss[0] ADDR Error. This issue affects Juniper Networks Junos OS on MX Series: All versions prior to 15.1R7-S13; 19.1 versions prior to 19.1R3-S9; 19.2 versions prior to 19.2R3-S6; 19.3 versions prior to 19.3R3-S6; 19.4 versions prior to 19.4R2-S7, 19.4R3-S8; 20.1 version 20.1R1 and later versions; 20.2 versions prior to 20.2R3-S5; 20.3 versions prior to 20.3R3-S5; 20.4 versions prior to 20.4R3-S2; 21.1 versions prior to 21.1R3; 21.2 versions prior to 21.2R3; 21.3 versions prior to 21.3R2.

Affected (197)

Products: Juniper: Junos
1 product
Junos
Configuration A
197 vulnerable · 17 platform
Vulnerable SoftwareAffected Versions
Juniper
Before 15.1
Version 15.1
Version 15.1 a1
Version 15.1 f1
Version 15.1 f2-s1
Version 15.1 f2-s2
Version 15.1 f2-s3
Version 15.1 f2-s4
Version 15.1 f2
Version 15.1 f3
Version 15.1 f4
Version 15.1 f5-s7
Version 15.1 f5
Version 15.1 f6-s10
Version 15.1 f6-s12
Version 15.1 f6-s1
Version 15.1 f6-s2
Version 15.1 f6-s3
Version 15.1 f6-s4
Version 15.1 f6-s5
Version 15.1 f6-s6
Version 15.1 f6-s7
Version 15.1 f6-s8
Version 15.1 f6-s9
Version 15.1 f6
Version 15.1 f7
Version 15.1 r1
Version 15.1 r2
Version 15.1 r3
Version 15.1 r4-s7
Version 15.1 r4-s8
Version 15.1 r4-s9
Version 15.1 r4
Version 15.1 r5-s1
Version 15.1 r5-s3
Version 15.1 r5-s5
Version 15.1 r5-s6
Version 15.1 r5
Version 15.1 r6-s1
Version 15.1 r6-s2
Version 15.1 r6-s3
Version 15.1 r6-s4
Version 15.1 r6-s6
Version 15.1 r6
Version 15.1 r7-s10
Version 15.1 r7-s11
Version 15.1 r7-s12
Version 15.1 r7-s1
Version 15.1 r7-s2
Version 15.1 r7-s3
Version 15.1 r7-s4
Version 15.1 r7-s5
Version 15.1 r7-s6
Version 15.1 r7-s7
Version 15.1 r7-s8
Version 15.1 r7-s9
Version 15.1 r7
Version 19.1
Version 19.1 r1-s1
Version 19.1 r1-s2
Version 19.1 r1-s3
Version 19.1 r1-s4
Version 19.1 r1-s5
Version 19.1 r1-s6
Version 19.1 r1
Version 19.1 r2-s1
Version 19.1 r2-s2
Version 19.1 r2-s3
Version 19.1 r2
Version 19.1 r3-s1
Version 19.1 r3-s2
Version 19.1 r3-s3
Version 19.1 r3-s4
Version 19.1 r3-s5
Version 19.1 r3-s6
Version 19.1 r3-s7
Version 19.1 r3-s8
Version 19.1 r3
Version 19.2
Version 19.2 r1-s1
Version 19.2 r1-s2
Version 19.2 r1-s3
Version 19.2 r1-s4
Version 19.2 r1-s5
Version 19.2 r1-s6
Version 19.2 r1-s7
Version 19.2 r1-s8
Version 19.2 r1-s9
Version 19.2 r1
Version 19.2 r2-s1
Version 19.2 r2
Version 19.2 r3-s1
Version 19.2 r3-s2
Version 19.2 r3-s3
Version 19.2 r3-s4
Version 19.2 r3-s5
Version 19.2 r3
Version 19.3
Version 19.3 r1-s1
Version 19.3 r1
Version 19.3 r2-s1
Version 19.3 r2-s2
Version 19.3 r2-s3
Version 19.3 r2-s4
Version 19.3 r2-s5
Version 19.3 r2-s6
Version 19.3 r2
Version 19.3 r3-s1
Version 19.3 r3-s2
Version 19.3 r3-s3
Version 19.3 r3-s4
Version 19.3 r3-s5
Version 19.3 r3
Version 19.4
Version 19.4 r1-s1
Version 19.4 r1-s2
Version 19.4 r1-s3
Version 19.4 r1-s4
Version 19.4 r1
Version 19.4 r2-s1
Version 19.4 r2-s2
Version 19.4 r2-s3
Version 19.4 r2-s4
Version 19.4 r2-s5
Version 19.4 r2-s6
Version 19.4 r2
Version 19.4 r3-s1
Version 19.4 r3-s2
Version 19.4 r3-s3
Version 19.4 r3-s4
Version 19.4 r3-s5
Version 19.4 r3-s6
Version 19.4 r3-s7
Version 19.4 r3
Version 20.1 r1-s1
Version 20.1 r1-s2
Version 20.1 r1-s3
Version 20.1 r1-s4
Version 20.1 r1
Version 20.1 r2-s1
Version 20.1 r2-s2
Version 20.1 r2
Version 20.1 r3-s1
Version 20.1 r3-s2
Version 20.1 r3-s3
Version 20.1 r3-s4
Version 20.1 r3
Version 20.2
Version 20.2 r1-s1
Version 20.2 r1-s2
Version 20.2 r1-s3
Version 20.2 r1
Version 20.2 r2-s1
Version 20.2 r2-s2
Version 20.2 r2-s3
Version 20.2 r2
Version 20.2 r3-s1
Version 20.2 r3-s2
Version 20.2 r3-s3
Version 20.2 r3-s4
Version 20.2 r3
Version 20.3
Version 20.3 r1-s1
Version 20.3 r1-s2
Version 20.3 r1
Version 20.3 r2-s1
Version 20.3 r2
Version 20.3 r3-s1
Version 20.3 r3-s2
Version 20.3 r3-s3
Version 20.3 r3-s4
Version 20.3 r3
Version 20.4
Version 20.4 r1-s1
Version 20.4 r1
Version 20.4 r2-s1
Version 20.4 r2-s2
Version 20.4 r2
Version 20.4 r3-s1
Version 20.4 r3
Version 21.1
Version 21.1 r1-s1
Version 21.1 r1
Version 21.1 r2-s1
Version 21.1 r2-s2
Version 21.1 r2
Version 21.2
Version 21.2 r1-s1
Version 21.2 r1-s2
Version 21.2 r1
Version 21.2 r2-s1
Version 21.2 r2-s2
Version 21.2 r2
Version 21.3
Version 21.3 r1-s1
Version 21.3 r1-s2
Version 21.3 r1
Running on/withPlatform Versions
Juniper
Mx10
All versions
Juniper
Mx10000
All versions
Juniper
Mx10003
All versions
Juniper
Mx10008
All versions
Juniper
Mx10016
All versions
Juniper
Mx104
All versions
Juniper
Mx150
All versions
Juniper
Mx2008
All versions
Juniper
Mx2010
All versions
Juniper
Mx2020
All versions
Juniper
Mx204
All versions
Juniper
Mx240
All versions
Juniper
Mx40
All versions
Juniper
Mx480
All versions
Juniper
Mx5
All versions
Juniper
Mx80
All versions
Juniper
Mx960
All versions

References (2)

Source: sirt@juniper.net
ExploitVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitVendor Advisory

Timeline

No history available yet.