Out-of-bounds read in Junos OS and Junos OS Evolved - CVE-2024-39516
Published: October 11, 2024
Vulnerability details
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
An Out-of-Bounds Read vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker sending a specifically malformed BGP packet to cause rpd to crash and restart, resulting in a Denial of Service (DoS).
Continued receipt and processing of this packet will create a sustained Denial of Service (DoS) condition.
Affected software
Junos OS Evolved
How to mitigate CVE-2024-39516
Junos OS Evolved - addressed in versions 21.4R3-S8-EVO, 22.2R3-S5-EVO