Juniper Networks Junos OS
cpe:2.3:a:juniper:junos:*:*:*:*:*:*:*, +3 more
- >= 22.4, < 22.4R3-S4
A double-free vulnerability has been identified in the routing process daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved. This vulnerability allows an attacker to send a malformed BGP Path attribute update, which is logged before the memory is freed. The improper handling of memory allocation and deallocation causes rpd to crash, resulting in a denial-of-service condition. This issue affects Junos OS versions from 22.4 prior to 22.4R3-S4 and Junos OS Evolved versions from 22.4 prior to 22.4R3-S4-EVO.
Exploitation of this vulnerability causes the routing process daemon (rpd) to crash, leading to a denial-of-service condition.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.