Resource management error in Junos OS and Junos OS Evolved - CVE-2021-0287
Published: July 19, 2021
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper management of internal resources within the application. In an Segment Routing ISIS (SR-ISIS)/MPLS environment, on Juniper Networks Junos OS and Junos OS Evolved devices, configured with ISIS Flexible Algorithm for Segment Routing and sensor-based statistics, a flap of a ISIS link in the network, can lead to a routing process daemon (RPD) crash and restart, causing a Denial of Service (DoS). Continued link flaps will create a sustained Denial of Service (DoS) condition.
Affected software
Junos OS Evolved
How to mitigate CVE-2021-0287
Junos OS Evolved - addressed in versions 20.3R2-EVO, 20.4R2-EVO, 21.1R1-EVO