Juniper Networks Junos OS Evolved
cpe:2.3:o:juniper:junos_os_evolved:*:*:*:*:*:*:*
- >= 22.4-EVO, < 22.4R3-S5-EVO
- >= 23.2-EVO, < 23.2R2-S2-EVO
- >= 23.4-EVO, < 23.4R2-S2-EVO
- >= 24.2-EVO, < 24.2R1-S2-EVO
- 24.2R2-EVO
A denial-of-service vulnerability has been identified in the Juniper Tunnel Driver (jtd) of Juniper Networks Junos OS Evolved. This vulnerability allows an unauthenticated, network-based attacker to cause a system crash by exploiting a missing release of memory after the effective lifetime. The issue arises when specifically malformed IPv6 packets are received and processed by the device, leading to kernel memory exhaustion. Systems configured with IPv6 are affected, causing a sustained denial-of-service condition. The vulnerability impacts Junos OS Evolved versions from 22.4-EVO prior to 22.4R3-S5-EVO, from 23.2-EVO prior to 23.2R2-S2-EVO, from 23.4-EVO prior to 23.4R2-S2-EVO, and from 24.2-EVO prior to 24.2R1-S2-EVO, as well as 24.2R2-EVO. Systems running versions prior to 22.4R1-EVO are not affected.
Exploitation of this vulnerability leads to memory exhaustion in the kernel, causing a system crash and a denial-of-service condition. Continuous processing of the malformed IPv6 packets can sustain this denial-of-service state.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.