CVE-2022-22201: SRX5000 Series with SPC3, SRX4000 Series, and vSRX: When PowerMode IPsec is configured, the PFE will crash upon receipt of a malformed ESP packet
An Improper Validation of Specified Index, Position, or Offset in Input vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an unauthenticated network-based attacker to cause a Denial of Service (DoS). On SRX5000 Series with SPC3, SRX4000 Series, and vSRX, when PowerMode IPsec is configured and a malformed ESP packet matching an established IPsec tunnel is received the PFE crashes. This issue affects Juniper Networks Junos OS on SRX5000 Series with SPC3, SRX4000 Series, and vSRX: All versions prior to 19.4R2-S6, 19.4R3-S7; 20.1 versions prior to 20.1R3-S3; 20.2 versions prior to 20.2R3-S4; 20.3 versions prior to 20.3R3-S3; 20.4 versions prior to 20.4R3-S2; 21.1 versions prior to 21.1R3; 21.2 versions prior to 21.2R3; 21.3 versions prior to 21.3R1-S2, 21.3R2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2022-22201?
CVE-2022-22201 has been classified with a severity level that indicates it allows a Denial of Service (DoS) by an unauthenticated attacker.
How do I fix CVE-2022-22201?
You can address CVE-2022-22201 by upgrading to a patched version of Junos OS as specified in the vendor's notification.
What products are affected by CVE-2022-22201?
CVE-2022-22201 affects multiple versions of Juniper Networks Junos OS, particularly on SRX5000 Series with SPC3 and SRX4000 Series devices.
Can CVE-2022-22201 be exploited remotely?
Yes, CVE-2022-22201 allows an unauthenticated network-based attacker to exploit the vulnerability remotely.
What is the impact of CVE-2022-22201 on systems?
The impact of CVE-2022-22201 results in a Denial of Service (DoS), causing affected systems to become unresponsive.