Memory leak in PTX Series and Junos OS - CVE-2021-31367
Published: October 14, 2021
Vulnerability identifier: #VU57359
CSH Severity: Low
CVSS v4: 7.1 [CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-31367
CWE-ID: CWE-401
Exploitation vector: Adjecent network
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to perform DoS attack on the target system.
The vulnerability exists due memory leak in the Packet Forwarding Engine (PFE). A remote attacker on the local network can force the application to leak memory and perform denial of service attack.
Affected software
PTX Series
Junos OS
Junos OS
How to mitigate CVE-2021-31367
Install updates from vendor's website.
Junos OS - addressed in versions 18.4R3-S9, 19.1R3-S7, 19.2R1-S7, 19.2R3-S3, 19.3R2-S6, 19.3R3-S3, 19.4R1-S4, 20.1R2-S2, 20.1R3, 20.2R3-S1, 20.3R3, 20.4R3, 21.1R2, 21.2R1