#VU94357 Missing release of memory after effective lifetime in Juniper Junos OS - CVE-2024-39550
Published: July 16, 2024
Juniper Junos OS
Juniper Networks, Inc.
Description
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to missing release of memory after effective lifetime error in the rtlogd process. A remote non-authenticated attacker can trigger internal events cause (which can be done by repeated port flaps) to cause a slow memory leak, ultimately leading to a Denial of Service (DoS).