2023-04-24 12:24:31 +02:00
{
"id" : "CVE-2023-22403" ,
"sourceIdentifier" : "sirt@juniper.net" ,
"published" : "2023-01-13T00:15:10.767" ,
2023-08-08 22:00:38 +00:00
"lastModified" : "2023-08-08T21:15:10.807" ,
"vulnStatus" : "Modified" ,
2023-04-24 12:24:31 +02:00
"descriptions" : [
{
"lang" : "en" ,
2023-08-08 22:00:38 +00:00
"value" : "\nAn Allocation of Resources Without Limits or Throttling vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause a Denial of Service (DoS).\n\n\n\nOn QFX10K Series, Inter-Chassis Control Protocol (ICCP) is used in MC-LAG topologies to exchange control information between the devices in the topology. ICCP connection flaps and sync issues will be observed due to excessive specific traffic to the local device.\n\n\n\nThis issue affects Juniper Networks Junos OS on QFX10K Series:\n\n * All versions prior to 20.2R3-S7;\n * 20.4 versions prior to 20.4R3-S4;\n * 21.1 versions prior to 21.1R3-S3;\n * 21.2 versions prior to 21.2R3-S1;\n * 21.3 versions prior to 21.3R3;\n * 21.4 versions prior to 21.4R3;\n * 22.1 versions prior to 22.1R2.\n\n\n\n\n"
2023-04-24 12:24:31 +02:00
}
] ,
"metrics" : {
"cvssMetricV31" : [
{
"source" : "sirt@juniper.net" ,
"type" : "Primary" ,
"cvssData" : {
"version" : "3.1" ,
"vectorString" : "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H" ,
"attackVector" : "NETWORK" ,
"attackComplexity" : "LOW" ,
"privilegesRequired" : "NONE" ,
"userInteraction" : "NONE" ,
"scope" : "UNCHANGED" ,
"confidentialityImpact" : "NONE" ,
"integrityImpact" : "NONE" ,
"availabilityImpact" : "HIGH" ,
"baseScore" : 7.5 ,
"baseSeverity" : "HIGH"
} ,
"exploitabilityScore" : 3.9 ,
"impactScore" : 3.6
}
]
} ,
"weaknesses" : [
{
2023-08-08 22:00:38 +00:00
"source" : "sirt@juniper.net" ,
2023-04-24 12:24:31 +02:00
"type" : "Primary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-770"
}
]
} ,
{
2023-08-08 22:00:38 +00:00
"source" : "nvd@nist.gov" ,
2023-04-24 12:24:31 +02:00
"type" : "Secondary" ,
"description" : [
{
"lang" : "en" ,
"value" : "CWE-770"
}
]
}
] ,
"configurations" : [
{
"operator" : "AND" ,
"nodes" : [
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:*" ,
"versionEndExcluding" : "20.2" ,
"matchCriteriaId" : "9D5DC3ED-1843-467F-903D-2DB6CDFF06F1"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:-:*:*:*:*:*:*" ,
"matchCriteriaId" : "D4CF52CF-F911-4615-9171-42F84429149F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r1:*:*:*:*:*:*" ,
"matchCriteriaId" : "CD07B7E2-F5C2-4610-9133-FDA9E66DFF4F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r1-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "D3C23AEB-34DE-44FB-8D64-E69D6E8B7401"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r1-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "18DB9401-5A51-4BB3-AC2F-58F58F1C788C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r1-s3:*:*:*:*:*:*" ,
"matchCriteriaId" : "06F53DA5-59AE-403C-9B1E-41CE267D8BB1"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r2:*:*:*:*:*:*" ,
"matchCriteriaId" : "3332262F-81DA-4D78-99C9-514CADA46611"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r2-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "B46B63A2-1518-4A29-940C-F05624C9658D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r2-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "8E0D4959-3865-42A7-98CD-1103EBD84528"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r2-s3:*:*:*:*:*:*" ,
"matchCriteriaId" : "3A58292B-814C-49E7-8D6D-BE26EFB9ADDF"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r3:*:*:*:*:*:*" ,
"matchCriteriaId" : "681AE183-7183-46E7-82EA-28C398FA1C3D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r3-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "8A6E9627-8BF1-4BE8-844B-EE8F1C9478F0"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r3-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "0A80F23B-CD13-4745-BA92-67C23B297A18"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r3-s3:*:*:*:*:*:*" ,
"matchCriteriaId" : "67D4004B-1233-4258-9C7A-F05189146B44"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r3-s4:*:*:*:*:*:*" ,
"matchCriteriaId" : "69E33F24-D480-4B5F-956D-D435A551CBE7"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r3-s5:*:*:*:*:*:*" ,
"matchCriteriaId" : "6E5E3FDB-3F33-4686-9B64-0152AD41939D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.2:r3-s6:*:*:*:*:*:*" ,
"matchCriteriaId" : "9C411A2E-A407-44E5-A2B2-3D049FB2DB4D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:-:*:*:*:*:*:*" ,
"matchCriteriaId" : "3D361B23-A3C2-444B-BEB8-E231DA950567"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r1:*:*:*:*:*:*" ,
"matchCriteriaId" : "20DDC6B7-BFC4-4F0B-8E68-442C23765BF2"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r1-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "037BA01C-3F5C-4503-A633-71765E9EF774"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r2:*:*:*:*:*:*" ,
"matchCriteriaId" : "C54B047C-4B38-40C0-9855-067DCF7E48BD"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r2-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "38984199-E332-4A9C-A4C0-78083D052E15"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r2-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "AA6526FB-2941-4D18-9B2E-472AD5A62A53"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3:*:*:*:*:*:*" ,
"matchCriteriaId" : "09876787-A40A-4340-9C12-8628C325353B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "41615104-C17E-44DA-AB0D-6E2053BD4EF4"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "1981DE38-36B5-469D-917E-92717EE3ED53"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:20.4:r3-s3:*:*:*:*:*:*" ,
"matchCriteriaId" : "AFA68ACD-AAE5-4577-B734-23AAF77BC85A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.1:-:*:*:*:*:*:*" ,
"matchCriteriaId" : "6FDB5B7D-FB37-47E3-8678-B9ED578CCA5F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.1:r1:*:*:*:*:*:*" ,
"matchCriteriaId" : "625BA7E6-D2AD-4A48-9B94-24328BE5B06A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.1:r1-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "F462F4E3-762C-429F-8D25-5521100DD37C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.1:r2:*:*:*:*:*:*" ,
"matchCriteriaId" : "C0BC9DAC-D6B5-4C5E-8C73-6E550D9A30F5"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.1:r2-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "689FE1AE-7A85-4FB6-AB02-E732F23581B6"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.1:r2-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "79E56DAC-75AD-4C81-9835-634B40C15DA6"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.1:r3:*:*:*:*:*:*" ,
"matchCriteriaId" : "A0040FE2-7ECD-4755-96CE-E899BA298E0C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.1:r3-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "076AB086-BB79-4583-AAF7-A5233DFB2F95"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.1:r3-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "72E2DDF6-01DF-4880-AB60-B3DA3281E88D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:-:*:*:*:*:*:*" ,
"matchCriteriaId" : "216E7DDE-453D-481F-92E2-9F8466CDDA3F"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r1:*:*:*:*:*:*" ,
"matchCriteriaId" : "A52AF794-B36B-43A6-82E9-628658624B0A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r1-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "3998DC76-F72F-4452-9150-652140B113EB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r1-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "36ED4552-2420-45F9-B6E4-6DA2B2B12870"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r2:*:*:*:*:*:*" ,
"matchCriteriaId" : "C28A14E7-7EA0-4757-9764-E39A27CFDFA5"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r2-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "4A43752D-A4AF-4B4E-B95B-192E42883A5B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r2-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "42986538-E9D0-4C2E-B1C4-A763A4EE451B"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.2:r3:*:*:*:*:*:*" ,
"matchCriteriaId" : "DE22CA01-EA7E-4EE5-B59F-EE100688C1DA"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.3:-:*:*:*:*:*:*" ,
"matchCriteriaId" : "2E7D597D-F6B6-44C3-9EBC-4FA0686ACB5C"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.3:r1:*:*:*:*:*:*" ,
"matchCriteriaId" : "CC78A4CB-D617-43FC-BB51-287D2D0C44ED"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.3:r1-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "30FF67F8-1E3C-47A8-8859-709B3614BA6E"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.3:r1-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "0C7C507E-C85E-4BC6-A3B0-549516BAB524"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.3:r2:*:*:*:*:*:*" ,
"matchCriteriaId" : "6514CDE8-35DC-469F-89A3-078684D18F7A"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.3:r2-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "4624565D-8F59-44A8-B7A8-01AD579745E7"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.3:r2-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "4BF8CD82-C338-4D9A-8C98-FCB3CEAA9227"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:-:*:*:*:*:*:*" ,
"matchCriteriaId" : "79ED3CE8-CC57-43AB-9A26-BBC87816062D"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r1:*:*:*:*:*:*" ,
"matchCriteriaId" : "4310D2D9-A8A6-48F8-9384-0A0692A1E1C3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r1-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "9962B01C-C57C-4359-9532-676AB81CE8B0"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r1-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "62178549-B679-4902-BFDB-2993803B7FCE"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r2:*:*:*:*:*:*" ,
"matchCriteriaId" : "9AD697DF-9738-4276-94ED-7B9380CD09F5"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r2-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "09FF5818-0803-4646-A386-D7C645EE58A3"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:21.4:r2-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "2229FA59-EB24-49A2-85CE-F529A8DE6BA7"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:22.1:r1:*:*:*:*:*:*" ,
"matchCriteriaId" : "3F96EBE9-2532-4E35-ABA5-CA68830476A4"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:22.1:r1-s1:*:*:*:*:*:*" ,
"matchCriteriaId" : "B4D936AE-FD74-4823-A824-2D9F24C25BFB"
} ,
{
"vulnerable" : true ,
"criteria" : "cpe:2.3:o:juniper:junos:22.1:r1-s2:*:*:*:*:*:*" ,
"matchCriteriaId" : "E117E493-F4E1-4568-88E3-F243C74A2662"
}
]
} ,
{
"operator" : "OR" ,
"negate" : false ,
"cpeMatch" : [
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:qfx10002:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "F1401145-D8EC-4DB9-9CDE-9DE6C0D000C5"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:qfx10008:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "1453E42A-77B3-4922-8EC3-1A5668C39550"
} ,
{
"vulnerable" : false ,
"criteria" : "cpe:2.3:h:juniper:qfx10016:-:*:*:*:*:*:*:*" ,
"matchCriteriaId" : "26408465-BD6A-4416-B98E-691A5F651080"
}
]
}
]
}
] ,
"references" : [
{
"url" : "https://kb.juniper.net/JSA70199" ,
"source" : "sirt@juniper.net" ,
"tags" : [
"Vendor Advisory"
]
}
]
}