CVE-2024-39535: Junos OS Evolved: ACX 7000 Series: When specific traffic is received in a VPLS scenario evo-pfemand crashes

Published Jul 11, 2024
·
Updated

An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on ACX 7000 Series allows an unauthenticated, adjacent attacker to cause a Denial-of-Service (DoS).

When a device has a Layer 3 or an IRB interface configured in a VPLS instance and specific traffic is received, the evo-pfemand processes crashes which causes a service outage for the respective FPC until the system is recovered manually.

This issue only affects Junos OS Evolved 22.4R2-S1 and 22.4R2-S2 releases and is fixed in 22.4R3. No other releases are affected.

Affected Software

9 affected components
Juniper Networks Junos OS Evolved>=22.4R2-S1<=22.4R2-S2
All of the following
Any of the following
Juniper Junos OS Evolved=22.4-r2-s1
Juniper Junos OS Evolved=22.4-r2-s2
Any of the following
Juniper Acx7020
Juniper ACX7024
Juniper ACX7024X
Juniper Acx7100
Juniper Acx7300
Juniper ACX7509

Remediation

Information

The following software releases have been updated to resolve this specific issue: 22.4R3-EVO, and all subsequent releases.

Event History

Jul 11, 2024
CVE Published
via MITRE·04:09 PM
Data Sourced
via MITRE·04:09 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software

Frequently Asked Questions

1

What is the severity of CVE-2024-39535?

CVE-2024-39535 has a severity rating that indicates it can lead to a Denial-of-Service (DoS) condition.

2

How do I fix CVE-2024-39535?

To address CVE-2024-39535, you should update your Junos OS Evolved to a version later than 22.4R2-S2.

3

Who is affected by CVE-2024-39535?

CVE-2024-39535 affects devices running Junos OS Evolved on Juniper Networks ACX 7000 Series between versions 22.4R2-S1 and 22.4R2-S2.

4

What type of vulnerability is CVE-2024-39535?

CVE-2024-39535 is classified as an Improper Check for Unusual or Exceptional Conditions vulnerability.

5

Can CVE-2024-39535 be exploited remotely?

CVE-2024-39535 can be exploited by an unauthenticated, adjacent attacker to cause a Denial-of-Service.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203