CVE-2021-31368Uncontrolled Resource Consumption in Networks Junos OS

Severity
7.5HIGHNVD
EPSS
0.5%
top 33.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 19
Latest updateMay 24

Description

An Uncontrolled Resource Consumption vulnerability in the kernel of Juniper Networks JUNOS OS allows an unauthenticated network based attacker to cause 100% CPU load and the device to become unresponsive by sending a flood of traffic to the out-of-band management ethernet port. Continued receipted of a flood will create a sustained Denial of Service (DoS) condition. Once the flood subsides the system will recover by itself. An indication that the system is affected by this issue would be that ke

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

CVEListV5juniper_networks/junos_osunspecified18.1R3-S13+11
NVDjuniper/junos< 18.1+12

🔴Vulnerability Details

2
GHSA
GHSA-ccf5-w648-6p79: An Uncontrolled Resource Consumption vulnerability in the kernel of Juniper Networks JUNOS OS allows an unauthenticated network based attacker to caus2022-05-24
CVEList
Junos OS: EX2300 Series, EX3400 Series, and ACX710 might become unresponsive if the out-of-band management port receives a flood of traffic2021-10-19

📋Vendor Advisories

1
Juniper
CVE-2021-31368: An Uncontrolled Resource Consumption vulnerability in the kernel of Juniper Networks JUNOS OS allows an unauthenticated network based attacker to caus2021-10-19

📄Research Papers

1
arXiv
A Review on C3I Systems' Security: Vulnerabilities, Attacks, and Countermeasures2022-01-31
CVE-2021-31368 — Uncontrolled Resource Consumption | cvebase