Reachable assertion in Junos OS and Junos OS Evolved - CVE-2023-44175
Published: October 25, 2023
Vulnerability details
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to reachable assertion error in the routing protocol daemon (rpd). A remote non-authenticated attacker can send specific genuine PIM packets to the device resulting in rpd to crash causing a Denial of Service (DoS).
Affected software
Junos OS Evolved
How to mitigate CVE-2023-44175
Junos OS Evolved - addressed in versions 22.3R3-EVO, 22.4R3-EVO, 23.2R1-EVO