#VU68369 Time-of-check Time-of-use (TOCTOU) Race Condition in Juniper Junos OS and Junos OS Evolved - CVE-2022-22220
Published: October 17, 2022
Juniper Junos OS
Junos OS Evolved
Juniper Networks, Inc.
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a race condition in Routing Protocol Daemon (rpd) when handling BGP traffic. When a BGP flow route with redirect IP extended community is received, and the reachability to the next-hop of the corresponding redirect IP is flapping, the rpd process might crash.