7.5

CVE-2023-36835

An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on QFX10000 Series allows a network based attacker to cause a Denial of Service (DoS).

If a specific valid IP packet is received and that packet needs to be routed over a VXLAN tunnel, this will result in a PFE wedge condition due to which traffic gets impacted. As this is not a crash and restart scenario, this condition will persist until the system is rebooted to recover.

This issue affects Juniper Networks Junos OS on QFX10000:
20.3 version 20.3R1 and later versions;
20.4 versions prior to 20.4R3-S5;
21.1 versions prior to 21.1R3-S5;
21.2 versions prior to 21.2R3-S5;
21.3 versions prior to 21.3R3-S4;
21.4 versions prior to 21.4R3-S1;
22.1 versions prior to 22.1R3;
22.2 versions prior to 22.2R2;
22.3 versions prior to 22.3R1-S2, 22.3R2.

Data is provided by the National Vulnerability Database (NVD)
JuniperJunos Version20.3 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.3 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.3 Updater1-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.3 Updater2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.3 Updater2-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.3 Updater3
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.3 Updater3-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.3 Updater3-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.3 Updater3-s3
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.3 Updater3-s4
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.3 Updater3-s5
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.3 Updater3-s6
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Update-
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater2-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater2-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater3
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater3-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater3-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater3-s3
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version20.4 Updater3-s4
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Update-
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater2-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater2-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater3
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater3-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater3-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater3-s3
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.1 Updater3-s4
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Update-
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater1-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater2-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater2-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater3
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater3-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater3-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater3-s3
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.2 Updater3-s4
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Update-
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater1-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater2-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater2-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater3
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater3-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater3-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.3 Updater3-s3
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Update-
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Updater1-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Updater2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Updater2-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Updater2-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version21.4 Updater3
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.1 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.1 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.1 Updater1-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.1 Updater2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.1 Updater2-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.1 Updater2-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.2 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.2 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.2 Updater1-s2
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.3 Updater1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
JuniperJunos Version22.3 Updater1-s1
   JuniperQfx10002 Version-
   JuniperQfx10002-60c Version-
   JuniperQfx10008 Version-
   JuniperQfx10016 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.19% 0.41
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
sirt@juniper.net 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CWE-754 Improper Check for Unusual or Exceptional Conditions

The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.