CVE-2024-30395: Junos OS and Junos OS Evolved: A malformed BGP tunnel encapsulation attribute will lead to an rpd crash
An Improper Validation of Specified Type of Input vulnerability in Routing Protocol Daemon (RPD) of Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause Denial of Service (DoS).
If a BGP update is received over an established BGP session which contains a tunnel encapsulation attribute with a specifically malformed TLV, rpd will crash and restart. This issue affects:
Junos OS:
all versions before 21.2R3-S7,
from 21.3 before 21.3R3-S5,
from 21.4 before 21.4R3-S5,
from 22.1 before 22.1R3-S5,
from 22.2 before 22.2R3-S3,
from 22.3 before 22.3R3-S2,
from 22.4 before 22.4R3,
from 23.2 before 23.2R1-S2, 23.2R2.
Junos OS Evolved:
all versions before 21.2R3-S7-EVO,
from 21.3-EVO before 21.3R3-S5-EVO,
from 21.4-EVO before 21.4R3-S5-EVO, from 22.2-EVO before 22.2R3-S3-EVO,
from 22.3-EVO before 22.3R3-S2-EVO,
from 22.4-EVO before 22.4R3-EVO,
from 23.2-EVO before 23.2R1-S2-EVO, 23.2R2-EVO.
This is a related but separate issue than the one described in JSA75739
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-30395?
CVE-2024-30395 is rated as a high-severity vulnerability due to its potential to cause Denial of Service (DoS) when exploited.
How do I fix CVE-2024-30395?
To fix CVE-2024-30395, upgrade your Junos OS or Junos OS Evolved to the latest available version that is not affected by this vulnerability.
What products are affected by CVE-2024-30395?
CVE-2024-30395 affects various versions of Junos OS and Junos OS Evolved, specifically from version 21.3 and upward.
Can CVE-2024-30395 be exploited remotely?
Yes, CVE-2024-30395 can be exploited by an unauthenticated, network-based attacker.
What impact does CVE-2024-30395 have on network services?
The impact of CVE-2024-30395 is that it allows an attacker to cause a Denial of Service, potentially disrupting network services.