7.5

CVE-2022-22192

Junos OS Evolved: PTX Series: An attacker can cause a kernel panic by sending a malformed TCP packet to the device

An Improper Validation of Syntactic Correctness of Input vulnerability in the kernel of Juniper Networks Junos OS Evolved on PTX series allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS). When an incoming TCP packet destined to the device is malformed there is a possibility of a kernel panic. Only TCP packets destined to the ports for BGP, LDP and MSDP can trigger this. This issue only affects PTX10004, PTX10008, PTX10016. No other PTX Series devices or other platforms are affected. This issue affects Juniper Networks Junos OS Evolved: 20.4-EVO versions prior to 20.4R3-S4-EVO; 21.3-EVO versions prior to 21.3R3-EVO; 21.4-EVO versions prior to 21.4R3-EVO; 22.1-EVO versions prior to 22.1R2-EVO. This issue does not affect Juniper Networks Junos OS Evolved versions prior to 20.4R1-EVO.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Juniper ≫ Junos Os Evolved Version 20.4 Update r1
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 20.4 Update r1-s1
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 20.4 Update r1-s2
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 20.4 Update r2
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 20.4 Update r2-s1
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 20.4 Update r2-s2
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 20.4 Update r2-s3
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 20.4 Update r3
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 20.4 Update r3-s1
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 20.4 Update r3-s2
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 20.4 Update r3-s3
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 21.3 Update r1
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 21.3 Update r1-s1
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 21.3 Update r2
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 21.3 Update r2-s1
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 21.3 Update r2-s2
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 21.4 Update -
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 21.4 Update r1
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 21.4 Update r1-s1
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 21.4 Update r2
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 21.4 Update r2-s1
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 21.4 Update r2-s2
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 22.1 Update r1
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 22.1 Update r1-s1
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Juniper ≫ Junos Os Evolved Version 22.1 Update r1-s2
   Juniper ≫ Ptx10004 Version -
   Juniper ≫ Ptx10008 Version -
   Juniper ≫ Ptx10016 Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.74% 0.517
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
Juniper 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-1286 Improper Validation of Syntactic Correctness of Input

The product receives input that is expected to be well-formed - i.e., to comply with a certain syntax - but it does not validate or incorrectly validates that the input complies with the syntax.

CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.