6.5

CVE-2022-22168

Junos OS: vMX and MX150: Specific packets might cause a memory leak and eventually an FPC reboot

An Improper Validation of Specified Type of Input vulnerability in the kernel of Juniper Networks Junos OS allows an unauthenticated adjacent attacker to trigger a Missing Release of Memory after Effective Lifetime vulnerability. Continued exploitation of this vulnerability will eventually lead to an FPC reboot and thereby a Denial of Service (DoS). This issue affects: Juniper Networks Junos OS on vMX and MX150: All versions prior to 19.2R1-S8, 19.2R3-S4; 19.3 versions prior to 19.3R3-S5; 19.4 versions prior to 19.4R2-S5, 19.4R3-S6; 20.1 versions prior to 20.1R3-S2; 20.2 versions prior to 20.2R3-S3; 20.3 versions prior to 20.3R3-S1; 20.4 versions prior to 20.4R3; 21.1 versions prior to 21.1R2-S1, 21.1R3; 21.2 versions prior to 21.2R1-S1, 21.2R2; 21.3 versions prior to 21.3R1-S1, 21.3R2.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
JuniperJunos Version <= 19.1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Update-
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater1-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater1-s2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater1-s3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater1-s4
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater1-s5
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater1-s6
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater1-s7
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater2-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater3-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater3-s2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.2 Updater3-s3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Update-
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater1-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater2-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater2-s2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater2-s3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater2-s4
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater2-s5
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater2-s6
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater3-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater3-s2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater3-s3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.3 Updater3-s4
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater1-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater1-s2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater1-s3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater1-s4
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater2-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater2-s2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater2-s3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater2-s4
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater3-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater3-s2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater3-s3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater3-s4
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version19.4 Updater3-s5
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.1 Updater1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.1 Updater1-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.1 Updater1-s2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.1 Updater1-s3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.1 Updater1-s4
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.1 Updater2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.1 Updater2-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.1 Updater2-s2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.1 Updater3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.1 Updater3-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.2 Updater1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.2 Updater1-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.2 Updater1-s2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.2 Updater1-s3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.2 Updater2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.2 Updater2-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.2 Updater2-s2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.2 Updater2-s3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.2 Updater3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.2 Updater3-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.2 Updater3-s2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.3 Updater1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.3 Updater1-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.3 Updater2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.3 Updater2-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.3 Updater3
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.4 Updater1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.4 Updater1-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.4 Updater2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version20.4 Updater2-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version21.1 Updater1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version21.1 Updater1-s1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version21.1 Updater2
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version21.2 Updater1
   JuniperMx150 Version-
   JuniperVmx Version-
JuniperJunos Version21.3 Updater1
   JuniperMx150 Version-
   JuniperVmx Version-
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.08% 0.198
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.5 2.8 3.6
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 6.1 6.5 6.9
AV:A/AC:L/Au:N/C:N/I:N/A:C
sirt@juniper.net 6.5 2.8 3.6
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-1287 Improper Validation of Specified Type of Input

The product receives input that is expected to be of a certain type, but it does not validate or incorrectly validates that the input is actually of the expected type.

CWE-401 Missing Release of Memory after Effective Lifetime

The product does not sufficiently track and release allocated memory after it has been used, which slowly consumes remaining memory.