CVE-2024-30410Incorrect Behavior Order in Networks Junos

Severity
6.9MEDIUMNVD
EPSS
0.3%
top 50.84%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 12

Description

An Incorrect Behavior Order in the routing engine (RE) of Juniper Networks Junos OS on EX4300 Series allows traffic intended to the device to reach the RE instead of being discarded when the discard term is set in loopback (lo0) interface. The intended function is that the lo0 firewall filter takes precedence over the revenue interface firewall filter. This issue affects only IPv6 firewall filter. This issue only affects the EX4300 switch. No other products or platforms are affected by this vu

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:N/SC:N/SI:L/SA:N

Affected Packages2 packages

CVEListV5juniper_networks/junos21.221.2R3-S7+2
NVDjuniper/junos< 20.4+3

🔴Vulnerability Details

2
CVEList
Junos OS: EX4300 Series: Loopback filter not blocking traffic despite having discard term.2024-04-12
GHSA
GHSA-96r2-52xr-8x9x: An Incorrect Behavior Order in the routing engine (RE) of Juniper Networks Junos OS on EX4300 Series allows traffic intended to the device to reach th2024-04-12

📋Vendor Advisories

1
Juniper
CVE-2024-30410: An Incorrect Behavior Order in the routing engine (RE) of Juniper Networks Junos OS on EX4300 Series allows traffic intended to the device to reach th2024-04-12
CVE-2024-30410 — Incorrect Behavior Order | cvebase