#VU65370 Improper Check for Unusual or Exceptional Conditions in Juniper Junos OS - CVE-2022-22217
Published: July 16, 2022
Juniper Junos OS
Juniper Networks, Inc.
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper error handling in the Packet Forwarding Engine (PFE) caused by malformed MLD packets looping on a multi-homed Ethernet Segment Identifier (ESI) when VXLAN is configured. A remote attacker can send specially crafted MLD packets to the system and perform a denial of service (DoS) attack.
Remediation
The vulnerability affects QFX10K Series switches, including the QFX10002, QFX10008, and QFX10016.
Install updates from vendor's website.