7.5

CVE-2023-22403

An Allocation of Resources Without Limits or Throttling vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS).



On QFX10K Series, Inter-Chassis Control Protocol (ICCP) is used in MC-LAG topologies to exchange control information between the devices in the topology. ICCP connection flaps and sync issues will be observed due to excessive specific traffic to the local device.



This issue affects Juniper Networks Junos OS on QFX10K Series:

  *  All versions prior to 20.2R3-S7;
  *  20.4 versions prior to 20.4R3-S4;
  *  21.1 versions prior to 21.1R3-S3;
  *  21.2 versions prior to 21.2R3-S1;
  *  21.3 versions prior to 21.3R3;
  *  21.4 versions prior to 21.4R3;
  *  22.1 versions prior to 22.1R2.




Data is provided by the National Vulnerability Database (NVD)
JuniperJunos Version < 20.2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Update-
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater1-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater1-s3
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater2-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater2-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater2-s3
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater3
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater3-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater3-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater3-s3
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater3-s4
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater3-s5
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.2 Updater3-s6
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Update-
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater2-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater2-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater3
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater3-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater3-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater3-s3
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Update-
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater2-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater2-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater3
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater3-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater3-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Update-
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater1-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater2-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater2-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater3
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Update-
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater1-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater2-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater2-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Update-
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Updater1-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Updater2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Updater2-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Updater2-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.1 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.1 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.1 Updater1-s2
   JuniperQfx10002 Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.34% 0.563
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
sirt@juniper.net 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-770 Allocation of Resources Without Limits or Throttling

The product allocates a reusable resource or group of resources on behalf of an actor without imposing any restrictions on the size or number of resources that can be allocated, in violation of the intended security policy for that actor.