CVE-2023-22395: Junos OS: In an MPLS scenario the processing of specific packets to the device causes a buffer leak and ultimately a loss of connectivity
A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper Networks Junos OS allows an unauthenticated, adjacent attacker to cause a Denial of Service (DoS). In an MPLS scenario specific packets destined to an Integrated Routing and Bridging (irb) interface of the device will cause a buffer (mbuf) to leak. Continued receipt of these specific packets will eventually cause a loss of connectivity to and from the device, and requires a reboot to recover. These mbufs can be monitored by using the CLI command 'show system buffers': user@host> show system buffers 783/1497/2280 mbufs in use (current/cache/total) user@host> show system buffers 793/1487/2280 mbufs in use (current/cache/total) <<<<<< mbuf usage increased This issue affects Juniper Networks Junos OS: All versions prior to 19.3R3-S7; 19.4 versions prior to 19.4R3-S9; 20.1 version 20.1R1 and later versions; 20.2 versions prior to 20.2R3-S5; 20.3 versions prior to 20.3R3-S5; 20.4 versions prior to 20.4R3-S4; 21.1 versions prior to 21.1R3-S3; 21.2 versions prior to 21.2R3-S2; 21.3 versions prior to 21.3R3-S1; 21.4 versions prior to 21.4R3; 22.1 versions prior to 22.1R2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-22395?
CVE-2023-22395 has a severity rating that indicates it can allow unauthenticated, adjacent attackers to cause a Denial of Service (DoS).
How do I fix CVE-2023-22395?
To address CVE-2023-22395, it is recommended to update to the patched versions of Junos OS as specified in the vendor's advisory.
Which versions of Junos OS are affected by CVE-2023-22395?
CVE-2023-22395 affects multiple versions of Junos OS up to 19.3, along with specific builds of versions 19.4 and later.
What type of attack is possible using CVE-2023-22395?
CVE-2023-22395 enables attackers to perform a Denial of Service (DoS) attack by sending specific packets in an MPLS scenario.
What should I do if I'm running an affected version of Junos OS for CVE-2023-22395?
If running an affected version of Junos OS, promptly apply the security updates released by Juniper Networks to mitigate the vulnerability.