Improper check for unusual or exceptional conditions in Junos OS and Junos OS Evolved - CVE-2022-22196
Published: April 13, 2022
Vulnerability details
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper check for unusual or exceptional conditions error in the Routing Protocol Daemon (rpd). A remote non-authenticated attacker can cause a Denial of Service (DoS).
The rpd CPU spikes to 100% after a malformed ISIS TLV has been received which will lead to processing issues of routing updates and in turn traffic impact.
Affected software
Junos OS Evolved
How to mitigate CVE-2022-22196
Junos OS Evolved - addressed in versions 20.4R3-S3-EVO, 21.2R2-EVO, 21.3R1-EVO