First published: Tue Oct 19 2021(Updated: )
An Incomplete List of Disallowed Inputs vulnerability in Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on QFX5000 Series and EX4600 Series allows an adjacent unauthenticated attacker which sends a high rate of specific multicast traffic to cause control traffic received from the network to be dropped. This will impact control protocols (including but not limited to routing-protocols) and lead to a Denial of Service (DoS). Continued receipt of this specific multicast traffic will create a sustained Denial of Service (DoS) condition. This issue affects Juniper Networks Junos OS on QFX5000 and EX4600 Series: All versions prior to 17.3R3-S12; 17.4 versions prior to 17.4R3-S5; 18.3 versions prior to 18.3R3-S5; 18.4 versions prior to 18.4R3-S9; 19.1 versions prior to 19.1R3-S6; 19.2 versions prior to 19.2R1-S7, 19.2R3-S3; 19.3 versions prior to 19.3R2-S6, 19.3R3-S3; 19.4 versions prior to 19.4R1-S4, 19.4R3-S3; 20.1 versions prior to 20.1R2-S2, 20.1R3-S1; 20.2 versions prior to 20.2R3-S2; 20.3 versions prior to 20.3R3; 20.4 versions prior to 20.4R2-S2, 20.4R3; 21.1 versions prior to 21.1R1-S1, 21.1R2.
Credit: sirt@juniper.net
Affected Software | Affected Version | How to fix |
---|---|---|
Juniper Junos | =17.3 | |
Juniper Junos | =17.3-r1 | |
Juniper Junos | =17.3-r1-s1 | |
Juniper Junos | =17.3-r1-s4 | |
Juniper Junos | =17.3-r2 | |
Juniper Junos | =17.3-r2-s1 | |
Juniper Junos | =17.3-r2-s2 | |
Juniper Junos | =17.3-r2-s3 | |
Juniper Junos | =17.3-r2-s4 | |
Juniper Junos | =17.3-r2-s5 | |
Juniper Junos | =17.3-r3 | |
Juniper Junos | =17.3-r3 | |
Juniper Junos | =17.3-r3-s1 | |
Juniper Junos | =17.3-r3-s10 | |
Juniper Junos | =17.3-r3-s11 | |
Juniper Junos | =17.3-r3-s2 | |
Juniper Junos | =17.3-r3-s3 | |
Juniper Junos | =17.3-r3-s4 | |
Juniper Junos | =17.3-r3-s5 | |
Juniper Junos | =17.3-r3-s6 | |
Juniper Junos | =17.3-r3-s7 | |
Juniper Junos | =17.3-r3-s8 | |
Juniper Junos | =17.3-r3-s9 | |
Juniper Junos | =17.4 | |
Juniper Junos | =17.4-r1 | |
Juniper Junos | =17.4-r1-s1 | |
Juniper Junos | =17.4-r1-s2 | |
Juniper Junos | =17.4-r1-s3 | |
Juniper Junos | =17.4-r1-s4 | |
Juniper Junos | =17.4-r1-s5 | |
Juniper Junos | =17.4-r1-s6 | |
Juniper Junos | =17.4-r1-s7 | |
Juniper Junos | =17.4-r2 | |
Juniper Junos | =17.4-r2-s1 | |
Juniper Junos | =17.4-r2-s10 | |
Juniper Junos | =17.4-r2-s11 | |
Juniper Junos | =17.4-r2-s12 | |
Juniper Junos | =17.4-r2-s13 | |
Juniper Junos | =17.4-r2-s2 | |
Juniper Junos | =17.4-r2-s3 | |
Juniper Junos | =17.4-r2-s4 | |
Juniper Junos | =17.4-r2-s5 | |
Juniper Junos | =17.4-r2-s6 | |
Juniper Junos | =17.4-r2-s7 | |
Juniper Junos | =17.4-r2-s8 | |
Juniper Junos | =17.4-r2-s9 | |
Juniper Junos | =17.4-r3 | |
Juniper Junos | =17.4-r3-s1 | |
Juniper Junos | =17.4-r3-s2 | |
Juniper Junos | =17.4-r3-s3 | |
Juniper Junos | =17.4-r3-s4 | |
Juniper Junos | =18.3 | |
Juniper Junos | =18.3-r | |
Juniper Junos | =18.3-r1 | |
Juniper Junos | =18.3-r1-s1 | |
Juniper Junos | =18.3-r1-s2 | |
Juniper Junos | =18.3-r1-s3 | |
Juniper Junos | =18.3-r1-s4 | |
Juniper Junos | =18.3-r1-s5 | |
Juniper Junos | =18.3-r1-s6 | |
Juniper Junos | =18.3-r2 | |
Juniper Junos | =18.3-r2-s1 | |
Juniper Junos | =18.3-r2-s2 | |
Juniper Junos | =18.3-r2-s3 | |
Juniper Junos | =18.3-r2-s4 | |
Juniper Junos | =18.3-r3 | |
Juniper Junos | =18.3-r3-s1 | |
Juniper Junos | =18.3-r3-s2 | |
Juniper Junos | =18.3-r3-s3 | |
Juniper Junos | =18.3-r3-s4 | |
Juniper Junos | =18.4 | |
Juniper Junos | =18.4-r1 | |
Juniper Junos | =18.4-r1-s1 | |
Juniper Junos | =18.4-r1-s2 | |
Juniper Junos | =18.4-r1-s3 | |
Juniper Junos | =18.4-r1-s4 | |
Juniper Junos | =18.4-r1-s5 | |
Juniper Junos | =18.4-r1-s6 | |
Juniper Junos | =18.4-r1-s7 | |
Juniper Junos | =18.4-r2 | |
Juniper Junos | =18.4-r2-s1 | |
Juniper Junos | =18.4-r2-s2 | |
Juniper Junos | =18.4-r2-s3 | |
Juniper Junos | =18.4-r2-s4 | |
Juniper Junos | =18.4-r2-s5 | |
Juniper Junos | =18.4-r2-s6 | |
Juniper Junos | =18.4-r2-s7 | |
Juniper Junos | =18.4-r2-s8 | |
Juniper Junos | =18.4-r3 | |
Juniper Junos | =18.4-r3-s1 | |
Juniper Junos | =18.4-r3-s10 | |
Juniper Junos | =18.4-r3-s2 | |
Juniper Junos | =18.4-r3-s3 | |
Juniper Junos | =18.4-r3-s4 | |
Juniper Junos | =18.4-r3-s5 | |
Juniper Junos | =18.4-r3-s6 | |
Juniper Junos | =18.4-r3-s7 | |
Juniper Junos | =18.4-r3-s8 | |
Juniper Junos | =19.1 | |
Juniper Junos | =19.1-r1 | |
Juniper Junos | =19.1-r1-s1 | |
Juniper Junos | =19.1-r1-s2 | |
Juniper Junos | =19.1-r1-s3 | |
Juniper Junos | =19.1-r1-s4 | |
Juniper Junos | =19.1-r1-s5 | |
Juniper Junos | =19.1-r1-s6 | |
Juniper Junos | =19.1-r2 | |
Juniper Junos | =19.1-r2-s1 | |
Juniper Junos | =19.1-r2-s2 | |
Juniper Junos | =19.1-r2-s3 | |
Juniper Junos | =19.1-r3 | |
Juniper Junos | =19.1-r3-s1 | |
Juniper Junos | =19.1-r3-s2 | |
Juniper Junos | =19.1-r3-s3 | |
Juniper Junos | =19.1-r3-s4 | |
Juniper Junos | =19.1-r3-s5 | |
Juniper Junos | =19.2 | |
Juniper Junos | =19.2-r1 | |
Juniper Junos | =19.2-r1-s1 | |
Juniper Junos | =19.2-r1-s2 | |
Juniper Junos | =19.2-r1-s3 | |
Juniper Junos | =19.2-r1-s4 | |
Juniper Junos | =19.2-r1-s5 | |
Juniper Junos | =19.2-r1-s6 | |
Juniper Junos | =19.2-r2 | |
Juniper Junos | =19.2-r2-s1 | |
Juniper Junos | =19.2-r3 | |
Juniper Junos | =19.2-r3-s1 | |
Juniper Junos | =19.2-r3-s2 | |
Juniper Junos | =19.3 | |
Juniper Junos | =19.3-r1 | |
Juniper Junos | =19.3-r1-s1 | |
Juniper Junos | =19.3-r2 | |
Juniper Junos | =19.3-r2-s1 | |
Juniper Junos | =19.3-r2-s2 | |
Juniper Junos | =19.3-r2-s3 | |
Juniper Junos | =19.3-r2-s4 | |
Juniper Junos | =19.3-r2-s5 | |
Juniper Junos | =19.3-r3 | |
Juniper Junos | =19.3-r3-s1 | |
Juniper Junos | =19.3-r3-s2 | |
Juniper Junos | =19.4-r1 | |
Juniper Junos | =19.4-r1-s1 | |
Juniper Junos | =19.4-r1-s2 | |
Juniper Junos | =19.4-r1-s3 | |
Juniper Junos | =19.4-r2 | |
Juniper Junos | =19.4-r2-s1 | |
Juniper Junos | =19.4-r2-s2 | |
Juniper Junos | =19.4-r2-s3 | |
Juniper Junos | =19.4-r2-s4 | |
Juniper Junos | =19.4-r2-s5 | |
Juniper Junos | =19.4-r3 | |
Juniper Junos | =19.4-r3-s1 | |
Juniper Junos | =19.4-r3-s2 | |
Juniper Junos | =20.1-r1 | |
Juniper Junos | =20.1-r1-s1 | |
Juniper Junos | =20.1-r1-s2 | |
Juniper Junos | =20.1-r1-s3 | |
Juniper Junos | =20.1-r1-s4 | |
Juniper Junos | =20.1-r2 | |
Juniper Junos | =20.1-r2-s1 | |
Juniper Junos | =20.1-r3 | |
Juniper Junos | =20.2-r1 | |
Juniper Junos | =20.2-r1-s1 | |
Juniper Junos | =20.2-r1-s2 | |
Juniper Junos | =20.2-r1-s3 | |
Juniper Junos | =20.2-r2 | |
Juniper Junos | =20.2-r2-s1 | |
Juniper Junos | =20.2-r2-s2 | |
Juniper Junos | =20.2-r2-s3 | |
Juniper Junos | =20.2-r3 | |
Juniper Junos | =20.2-r3-s1 | |
Juniper Junos | =20.3-r1 | |
Juniper Junos | =20.3-r1-s1 | |
Juniper Junos | =20.3-r2 | |
Juniper Junos | =20.3-r2-s1 | |
Juniper Junos | =20.4-r1 | |
Juniper Junos | =20.4-r1-s1 | |
Juniper Junos | =20.4-r2 | |
Juniper Junos | =20.4-r2-s1 | |
Juniper Junos | =21.1-r1 | |
Juniper EX4600 | ||
Juniper EX4600 | ||
Juniper EX4650 | ||
Juniper QFX5100 | ||
Juniper QFX5100 | ||
Juniper QFX5110 | ||
Juniper QFX5120 | ||
Juniper QFX5130 | ||
Juniper QFX5200-48Y | ||
Juniper QFX5200-32C | ||
Juniper QFX5200-48Y | ||
Juniper QFX5210-64C | ||
Juniper QFX5210 | ||
Juniper QFX5220 |
The following software releases have been updated to resolve this specific issue: 17.3R3-S12, 17.4R3-S5, 18.3R3-S5, 18.4R3-S9, 19.1R3-S6, 19.2R1-S7, 19.2R3-S3, 19.3R2-S6, 19.3R3-S3, 19.4R1-S4, 19.4R3-S3, 20.1R2-S2, 20.1R3-S1, 20.2R3-S2, 20.3R3, 20.4R2-S2, 20.4R3, 21.1R1-S1, 21.1R2, 21.2R1, and all subsequent releases.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-31370 has a severity rating of High due to its potential for denial of service conditions.
To fix CVE-2021-31370, upgrade to the appropriate Junos OS version as specified in official Juniper documentation.
CVE-2021-31370 affects Juniper Networks Junos OS on QFX5000 Series and EX4600 Series devices.
No, CVE-2021-31370 requires an adjacent unauthenticated attacker to exploit the vulnerability.
CVE-2021-31370 allows an attacker to launch a denial of service attack by sending a high rate of specific multicast traffic.