First published: Mon Apr 17 2023(Updated: )
An Improper Handling of Length Parameter Inconsistency vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a network based, unauthenticated attacker to cause an RPD crash leading to a Denial of Service (DoS). Continued receipt and processing of this packet will create a sustained Denial of Service (DoS) condition. Upon receipt of a malformed BGP flowspec update, RPD will crash resulting in a Denial of Service. This issue affects Juniper Networks Junos OS: All versions prior to 18.1R3-S11; 18.2 versions prior to 18.2R3-S6; 18.3 versions prior to 18.3R3-S4; 18.4 versions prior to 18.4R3-S6; 19.1 versions prior to 19.1R3-S4; 19.2 versions prior to 19.2R3-S1; 19.3 versions prior to 19.3R3-S1; 19.4 versions prior to 19.4R3; 20.1 versions prior to 20.1R2; 20.2 versions prior to 20.2R2; 20.3 versions prior to 20.3R1-S1, 20.3R2; Juniper Networks Junos OS Evolved: All versions prior to 20.1R3-EVO; 20.2 versions prior to 20.2R2-EVO; 20.3 versions prior to 20.3R2-EVO;
Credit: sirt@juniper.net
Affected Software | Affected Version | How to fix |
---|---|---|
Juniper JUNOS | <18.1 | |
Juniper JUNOS | =18.1 | |
Juniper JUNOS | =18.1-r | |
Juniper JUNOS | =18.1-r1 | |
Juniper JUNOS | =18.1-r2 | |
Juniper JUNOS | =18.1-r2-s1 | |
Juniper JUNOS | =18.1-r2-s2 | |
Juniper JUNOS | =18.1-r2-s4 | |
Juniper JUNOS | =18.1-r3 | |
Juniper JUNOS | =18.1-r3-s1 | |
Juniper JUNOS | =18.1-r3-s10 | |
Juniper JUNOS | =18.1-r3-s2 | |
Juniper JUNOS | =18.1-r3-s3 | |
Juniper JUNOS | =18.1-r3-s4 | |
Juniper JUNOS | =18.1-r3-s5 | |
Juniper JUNOS | =18.1-r3-s6 | |
Juniper JUNOS | =18.1-r3-s7 | |
Juniper JUNOS | =18.1-r3-s8 | |
Juniper JUNOS | =18.1-r3-s9 | |
Juniper JUNOS | =18.1-r4 | |
Juniper JUNOS | =18.2 | |
Juniper JUNOS | =18.2-r | |
Juniper JUNOS | =18.2-r1 | |
Juniper JUNOS | =18.2-r1 | |
Juniper JUNOS | =18.2-r1-s2 | |
Juniper JUNOS | =18.2-r1-s3 | |
Juniper JUNOS | =18.2-r1-s4 | |
Juniper JUNOS | =18.2-r1-s5 | |
Juniper JUNOS | =18.2-r2 | |
Juniper JUNOS | =18.2-r2-s1 | |
Juniper JUNOS | =18.2-r2-s2 | |
Juniper JUNOS | =18.2-r2-s3 | |
Juniper JUNOS | =18.2-r2-s4 | |
Juniper JUNOS | =18.2-r2-s5 | |
Juniper JUNOS | =18.2-r2-s6 | |
Juniper JUNOS | =18.2-r2-s7 | |
Juniper JUNOS | =18.2-r2-s8 | |
Juniper JUNOS | =18.2-r3 | |
Juniper JUNOS | =18.2-r3-s1 | |
Juniper JUNOS | =18.2-r3-s2 | |
Juniper JUNOS | =18.2-r3-s3 | |
Juniper JUNOS | =18.2-r3-s4 | |
Juniper JUNOS | =18.2-r3-s5 | |
Juniper JUNOS | =18.3 | |
Juniper JUNOS | =18.3-r | |
Juniper JUNOS | =18.3-r1 | |
Juniper JUNOS | =18.3-r1-s1 | |
Juniper JUNOS | =18.3-r1-s2 | |
Juniper JUNOS | =18.3-r1-s3 | |
Juniper JUNOS | =18.3-r1-s4 | |
Juniper JUNOS | =18.3-r1-s5 | |
Juniper JUNOS | =18.3-r1-s6 | |
Juniper JUNOS | =18.3-r2 | |
Juniper JUNOS | =18.3-r2-s1 | |
Juniper JUNOS | =18.3-r2-s2 | |
Juniper JUNOS | =18.3-r2-s3 | |
Juniper JUNOS | =18.3-r2-s4 | |
Juniper JUNOS | =18.3-r3 | |
Juniper JUNOS | =18.3-r3-s1 | |
Juniper JUNOS | =18.3-r3-s2 | |
Juniper JUNOS | =18.3-r3-s3 | |
Juniper JUNOS | =18.4 | |
Juniper JUNOS | =18.4-r1 | |
Juniper JUNOS | =18.4-r1-s1 | |
Juniper JUNOS | =18.4-r1-s2 | |
Juniper JUNOS | =18.4-r1-s3 | |
Juniper JUNOS | =18.4-r1-s4 | |
Juniper JUNOS | =18.4-r1-s5 | |
Juniper JUNOS | =18.4-r1-s6 | |
Juniper JUNOS | =18.4-r1-s7 | |
Juniper JUNOS | =18.4-r2 | |
Juniper JUNOS | =18.4-r2-s1 | |
Juniper JUNOS | =18.4-r2-s10 | |
Juniper JUNOS | =18.4-r2-s2 | |
Juniper JUNOS | =18.4-r2-s3 | |
Juniper JUNOS | =18.4-r2-s4 | |
Juniper JUNOS | =18.4-r2-s5 | |
Juniper JUNOS | =18.4-r2-s6 | |
Juniper JUNOS | =18.4-r2-s7 | |
Juniper JUNOS | =18.4-r2-s8 | |
Juniper JUNOS | =18.4-r2-s9 | |
Juniper JUNOS | =18.4-r3 | |
Juniper JUNOS | =18.4-r3-s1 | |
Juniper JUNOS | =18.4-r3-s10 | |
Juniper JUNOS | =18.4-r3-s11 | |
Juniper JUNOS | =18.4-r3-s2 | |
Juniper JUNOS | =18.4-r3-s3 | |
Juniper JUNOS | =18.4-r3-s4 | |
Juniper JUNOS | =18.4-r3-s5 | |
Juniper JUNOS | =19.1 | |
Juniper JUNOS | =19.1-r1 | |
Juniper JUNOS | =19.1-r1-s1 | |
Juniper JUNOS | =19.1-r1-s2 | |
Juniper JUNOS | =19.1-r1-s3 | |
Juniper JUNOS | =19.1-r1-s4 | |
Juniper JUNOS | =19.1-r1-s5 | |
Juniper JUNOS | =19.1-r1-s6 | |
Juniper JUNOS | =19.1-r2 | |
Juniper JUNOS | =19.1-r2-s1 | |
Juniper JUNOS | =19.1-r2-s2 | |
Juniper JUNOS | =19.1-r2-s3 | |
Juniper JUNOS | =19.1-r3 | |
Juniper JUNOS | =19.1-r3-s1 | |
Juniper JUNOS | =19.1-r3-s2 | |
Juniper JUNOS | =19.1-r3-s3 | |
Juniper JUNOS | =19.2 | |
Juniper JUNOS | =19.2-r1 | |
Juniper JUNOS | =19.2-r1-s1 | |
Juniper JUNOS | =19.2-r1-s2 | |
Juniper JUNOS | =19.2-r1-s3 | |
Juniper JUNOS | =19.2-r1-s4 | |
Juniper JUNOS | =19.2-r1-s5 | |
Juniper JUNOS | =19.2-r1-s6 | |
Juniper JUNOS | =19.2-r1-s7 | |
Juniper JUNOS | =19.2-r1-s8 | |
Juniper JUNOS | =19.2-r1-s9 | |
Juniper JUNOS | =19.2-r2 | |
Juniper JUNOS | =19.2-r2-s1 | |
Juniper JUNOS | =19.2-r3 | |
Juniper JUNOS | =19.3 | |
Juniper JUNOS | =19.3-r1 | |
Juniper JUNOS | =19.3-r1-s1 | |
Juniper JUNOS | =19.3-r2 | |
Juniper JUNOS | =19.3-r2-s1 | |
Juniper JUNOS | =19.3-r2-s2 | |
Juniper JUNOS | =19.3-r2-s3 | |
Juniper JUNOS | =19.3-r2-s4 | |
Juniper JUNOS | =19.3-r2-s5 | |
Juniper JUNOS | =19.3-r2-s6 | |
Juniper JUNOS | =19.3-r2-s7 | |
Juniper JUNOS | =19.3-r3 | |
Juniper JUNOS | =19.4 | |
Juniper JUNOS | =19.4-r1 | |
Juniper JUNOS | =19.4-r1-s1 | |
Juniper JUNOS | =19.4-r1-s2 | |
Juniper JUNOS | =19.4-r1-s3 | |
Juniper JUNOS | =19.4-r1-s4 | |
Juniper JUNOS | =19.4-r2 | |
Juniper JUNOS | =19.4-r2-s1 | |
Juniper JUNOS | =19.4-r2-s2 | |
Juniper JUNOS | =19.4-r2-s3 | |
Juniper JUNOS | =19.4-r2-s4 | |
Juniper JUNOS | =19.4-r2-s5 | |
Juniper JUNOS | =19.4-r2-s6 | |
Juniper JUNOS | =19.4-r2-s7 | |
Juniper JUNOS | =20.1 | |
Juniper JUNOS | =20.1-r1 | |
Juniper JUNOS | =20.1-r1-s1 | |
Juniper JUNOS | =20.1-r1-s2 | |
Juniper JUNOS | =20.1-r1-s3 | |
Juniper JUNOS | =20.1-r1-s4 | |
Juniper JUNOS | =20.2 | |
Juniper JUNOS | =20.2-r1 | |
Juniper JUNOS | =20.2-r1-s1 | |
Juniper JUNOS | =20.2-r1-s2 | |
Juniper JUNOS | =20.2-r1-s3 | |
Juniper JUNOS | =20.3 | |
Juniper JUNOS | =20.3-r1 | |
Juniper Networks Junos OS Evolved | <20.1 | |
Juniper Networks Junos OS Evolved | =20.1 | |
Juniper Networks Junos OS Evolved | =20.1-r1 | |
Juniper Networks Junos OS Evolved | =20.1-r1-s1 | |
Juniper Networks Junos OS Evolved | =20.1-r2 | |
Juniper Networks Junos OS Evolved | =20.1-r2-s1 | |
Juniper Networks Junos OS Evolved | =20.1-r2-s2 | |
Juniper Networks Junos OS Evolved | =20.1-r2-s3 | |
Juniper Networks Junos OS Evolved | =20.1-r2-s4 | |
Juniper Networks Junos OS Evolved | =20.1-r2-s5 | |
Juniper Networks Junos OS Evolved | =20.2 | |
Juniper Networks Junos OS Evolved | =20.2-r1 | |
Juniper Networks Junos OS Evolved | =20.2-r1-s1 | |
Juniper Networks Junos OS Evolved | =20.3 | |
Juniper Networks Junos OS Evolved | =20.3-r1 | |
Juniper Networks Junos OS Evolved | =20.3-r1-s1 | |
Juniper Networks Junos OS Evolved | =20.3-r1-s2 | |
Juniper Networks Junos OS Evolved | =20.3-r1-s3 |
The following software releases have been updated to resolve this specific issue: Junos OS: 18.1R3-S11, 18.2R3-S6, 18.3R3-S4, 18.4R3-S6, 19.1R3-S4, 19.2R3-S1, 19.3R3-S1, 19.4R3, 20.1R2, 20.2R2, 20.3R1-S1, 20.3R2, 20.4R1, and all subsequent releases. Junos OS Evolved: 20.1R3-EVO, 20.2R2-EVO, 20.3R2-EVO, 20.4R1-EVO, and all subsequent releases.
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-28964 is classified as a high severity vulnerability that may lead to a Denial of Service (DoS).
To mitigate CVE-2023-28964, it is recommended to upgrade to the latest versions of Junos OS that are not affected by this vulnerability.
CVE-2023-28964 affects Juniper Networks Junos OS versions up to and including 18.1.
CVE-2023-28964 is an improper handling of length parameter inconsistency vulnerability in the routing protocol daemon (rpd).
Yes, CVE-2023-28964 can be exploited remotely by an unauthenticated attacker to cause a crash of the routing protocol daemon.