A Missing Synchronization vulnerability in the flow collector handler of Juniper Networks Junos OS Evolved on QFX Series allows an adjacent, unauthenticated attacker to cause a Denial-of-Service (DoS). When the reachability of an sFlow collector changes, the corresponding next-hop entry is updated. If this update occurs simultaneously with the sFlow thread accessing the next-hop data (which is outside the attackers control), it causes the evo-pfemand process to crash, impacting all traffic forwarding until the automatic process restart has completed. This issue affects Junos OS Evolved on QFX Series: * all 23.2 versions, * 23.4 versions before 23.4R2-S7-EVO, * 24.2 versions before 24.2R2-S5-EVO, * 24.4 versions before 24.4R2-S3-EVO, * 25.2 versions before 25.2R2-EVO.
CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:X/V:X/RE:M/U:XJuniper Junos Os Evolved
OSJuniper23.223.424.224.425.2Juniper Qfx10008
HWJuniperall versionsJuniper Qfx10016
HWJuniperall versionsJuniper Qfx5110
HWJuniperall versionsJuniper Qfx5120
HWJuniperall versionsJuniper Qfx5130
HWJuniperall versionsJuniper Qfx5140
HWJuniperall versionsJuniper Qfx5200
HWJuniperall versionsJuniper Qfx5210
HWJuniperall versionsJuniper Qfx5220
HWJuniperall versionsJuniper Qfx5230 64cd
HWJuniperall versionsJuniper Qfx5240
HWJuniperall versionsJuniper Qfx5241
HWJuniperall versionsJuniper Qfx5250
HWJuniperall versionsJuniper Qfx5700
HWJuniperall versions
Related vulnerabilities
RCE jako root w Juniper Junos OS Evolved — błędne uprawnienia do krytycznego zasobu
Juniper Junos RPD: DoS przez nieprawidłowy BGP FlowSpec message
Stack-based buffer overflow w Junos OS FXPC — RCE przez BGP/BFD
RCE przez niezainicjowany wskaźnik funkcji w Juniper Junos OS (fxpc)
DoS w Juniper Junos OS Evolved – awaria procesu evo-aftmand przy unilist ECMP