CVE-2023-36838: Junos OS: SRX Series: A flowd core occurs when running a low privileged CLI command
An Out-of-bounds Read vulnerability in the flow processing daemon (flowd) of Juniper Networks Junos OS on SRX Series allows a local, authenticated attacker with low privileges, to cause a Denial of Service (DoS).
If a low privileged user executes a specific CLI command, flowd which is responsible for traffic forwarding in SRX crashes and generates a core dump. This will cause temporary traffic interruption until the flowd process is restarted automatically. Continued execution of this command will lead to a sustained DoS.
This issue affects Juniper Networks Junos OS on SRX Series: All versions prior to 20.2R3-S7; 20.3 version 20.3R1 and later versions; 20.4 versions prior to 20.4R3-S6; 21.1 versions prior to 21.1R3-S5; 21.2 versions prior to 21.2R3-S4; 21.3 versions prior to 21.3R3-S4; 21.4 versions prior to 21.4R3-S3; 22.1 versions prior to 22.1R3-S1; 22.2 versions prior to 22.2R3; 22.3 versions prior to 22.3R2; 22.4 versions prior to 22.4R1-S1, 22.4R2.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 20.2R3-S7 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 20.4R3-S6 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 21.1R3-S5 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 21.2R3-S4 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 21.3R3-S4 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 21.4R3-S3 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 22.1R3-S1 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 22.2R3 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 22.3R2 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 22.4R1-S1 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 22.4R2 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 23.1R1 - Operational
Be aware temporary traffic interruption may occur until the flowd process is restarted automatically.
Event History
Frequently Asked Questions
What is the severity of CVE-2023-36838?
CVE-2023-36838 is classified as a medium severity vulnerability that can lead to a Denial of Service (DoS) for affected devices.
How do I fix CVE-2023-36838?
To address CVE-2023-36838, upgrade your Junos OS to the latest recommended version as specified in the vendor's advisories.
What types of devices are affected by CVE-2023-36838?
CVE-2023-36838 affects Juniper Networks JUNOS OS on SRX Series devices, specifically versions 20.2 and 20.3.
Can CVE-2023-36838 be exploited remotely?
No, CVE-2023-36838 requires local authenticated access to exploit, meaning only low privileged users on the device can trigger the vulnerability.
Has a patch been released for CVE-2023-36838?
Yes, a patch has been released for CVE-2023-36838, and users are advised to apply it to mitigate the vulnerability.