CVE-2023-22406: Junos OS and Junos OS Evolved: A memory leak which will ultimately lead to an rpd crash will be observed when a peer interface flaps continuously in a Segment Routing scenario using OSPF
A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS). In a segment-routing scenario with OSPF as IGP, when a peer interface continuously flaps, next-hop churn will happen and a continuous increase in Routing Protocol Daemon (rpd) memory consumption will be observed. This will eventually lead to an rpd crash and restart when the memory is full. The memory consumption can be monitored using the CLI command "show task memory detail" as shown in the following example: user@host> show task memory detail | match "RTNEXTHOPSTEMPLATE|RTTEMPLATEBOOKKEE" RTNEXTHOPSTEMPLATE 1008 1024 T 50 51200 50 51200 RTNEXTHOPSTEMPLATE 688 768 T 50 38400 50 38400 RTNEXTHOPSTEMPLATE 368 384 T 412330 158334720 412330 158334720 RTTEMPLATEBOOKKEE 2064 2560 T 33315 85286400 33315 85286400 user@host> show task memory detail | match "RTNEXTHOPSTEMPLATE|RTTEMPLATEBOOKKEE" RTNEXTHOPSTEMPLATE 1008 1024 T 50 51200 50 51200 RTNEXTHOPSTEMPLATE 688 768 T 50 38400 50 38400 RTNEXTHOPSTEMPLATE 368 384 T 419005 160897920 419005 160897920 <=== RTTEMPLATEBOOKKEE 2064 2560 T 39975 102336000 39975 10233600 <=== This issue affects: Juniper Networks Junos OS All versions prior to 19.3R3-S7; 19.4 versions prior to 19.4R2-S8, 19.4R3-S9; 20.2 versions prior to 20.2R3-S5; 20.3 versions prior to 20.3R3-S5; 20.4 versions prior to 20.4R3-S4; 21.1 versions prior to 21.1R3-S3; 21.2 versions prior to 21.2R3-S2; 21.3 versions prior to 21.3R3-S1; 21.4 versions prior to 21.4R2-S1, 21.4R3; 22.1 versions prior to 22.1R2. Juniper Networks Junos OS Evolved All versions prior to 20.4R3-S4-EVO; 21.4 versions prior to 21.4R2-S1-EVO, 21.4R3-EVO; 22.1 versions prior to 22.1R2-EVO.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2023-22406?
CVE-2023-22406 has been assigned a severity level that indicates it can lead to Denial of Service (DoS) when exploited.
How do I fix CVE-2023-22406?
To fix CVE-2023-22406, upgrade affected Juniper Networks Junos OS and Junos OS Evolved software to the latest version that addresses the vulnerability.
Which versions are affected by CVE-2023-22406?
CVE-2023-22406 affects Juniper Networks Junos OS versions up to but not including 20.4 and several specific revisions of 19.3 and 20.x.
Can CVE-2023-22406 be exploited remotely?
CVE-2023-22406 can be exploited by an adjacent, unauthenticated attacker, making it a potential risk in network environments.
What symptoms indicate exploitation of CVE-2023-22406?
Indicators of exploitation of CVE-2023-22406 include unexpected interruptions in service or Denial of Service conditions in network operations.