CVE-2021-0222Networks Junos OS vulnerability

CWE-164 documents4 sources
Severity
7.4HIGHNVD
EPSS
0.1%
top 83.67%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJan 15
Latest updateMay 24

Description

A vulnerability in Juniper Networks Junos OS allows an attacker to cause a Denial of Service (DoS) to the device by sending certain crafted protocol packets from an adjacent device with invalid payloads to the device. These crafted packets, which should be discarded, are instead replicated and sent to the RE. Over time, a Denial of Service (DoS) occurs. Continued receipt of these crafted protocol packets will cause an extended Denial of Service (DoS) condition, which may cause wider traffic impa

CVSS vector

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:HExploitability: 2.8 | Impact: 4.0

Affected Packages2 packages

CVEListV5juniper_networks/junos_os14.1X5314.1X53-D53+19
NVDjuniper/junos14 versions+13

🔴Vulnerability Details

2
GHSA
GHSA-px4x-jp5g-9393: A vulnerability in Juniper Networks Junos OS allows an attacker to cause a Denial of Service (DoS) to the device by sending certain crafted protocol p2022-05-24
CVEList
Junos OS: Upon receipt of certain protocol packets with invalid payloads a self-propagating Denial of Service may occur.2021-01-15

📋Vendor Advisories

1
Juniper
CVE-2021-0222: A vulnerability in Juniper Networks Junos OS allows an attacker to cause a Denial of Service (DoS) to the device by sending certain crafted protocol p2021-01-15
CVE-2021-0222 — Juniper Networks Junos OS vulnerability | cvebase