Vulnerabilities > Juniper > Junos > 20.3

DATE CVE VULNERABILITY TITLE RISK
2023-01-13 CVE-2023-22399 Classic Buffer Overflow vulnerability in Juniper Junos
When sFlow is enabled and it monitors a packet forwarded via ECMP, a buffer management vulnerability in the dcpfe process of Juniper Networks Junos OS on QFX10K Series systems allows an attacker to cause the Packet Forwarding Engine (PFE) to crash and restart by sending specific genuine packets to the device, resulting in a Denial of Service (DoS) condition.
network
low complexity
juniper CWE-120
7.5
2023-01-13 CVE-2023-22404 Out-of-bounds Write vulnerability in Juniper Junos
An Out-of-bounds Write vulnerability in the Internet Key Exchange Protocol daemon (iked) of Juniper Networks Junos OS on SRX series and MX with SPC3 allows an authenticated, network-based attacker to cause a Denial of Service (DoS).
network
low complexity
juniper CWE-787
6.5
2023-01-13 CVE-2023-22405 Unspecified vulnerability in Juniper Junos
An Improper Preservation of Consistency Between Independent Representations of Shared State vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS) to device due to out of resources.
low complexity
juniper
6.5
2023-01-13 CVE-2023-22406 Memory Leak vulnerability in Juniper Junos
A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS).
low complexity
juniper CWE-401
6.5
2023-01-13 CVE-2023-22409 Improper Validation of Specified Quantity in Input vulnerability in Juniper Junos
An Unchecked Input for Loop Condition vulnerability in a NAT library of Juniper Networks Junos OS allows a local authenticated attacker with low privileges to cause a Denial of Service (DoS).
local
low complexity
juniper CWE-1284
5.5
2023-01-13 CVE-2023-22410 Memory Leak vulnerability in Juniper Junos
A Missing Release of Memory after Effective Lifetime vulnerability in the Juniper Networks Junos OS on MX Series platforms with MPC10/MPC11 line cards, allows an unauthenticated adjacent attacker to cause a Denial of Service (DoS).
low complexity
juniper CWE-401
6.5
2023-01-13 CVE-2023-22411 Out-of-bounds Write vulnerability in Juniper Junos
An Out-of-Bounds Write vulnerability in Flow Processing Daemon (flowd) of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause Denial of Service (DoS).
network
low complexity
juniper CWE-787
7.5
2023-01-13 CVE-2023-22413 Unspecified vulnerability in Juniper Junos
An Improper Check or Handling of Exceptional Conditions vulnerability in the IPsec library of Juniper Networks Junos OS allows a network-based, unauthenticated attacker to cause Denial of Service (DoS).
network
low complexity
juniper
7.5
2023-01-13 CVE-2023-22414 Memory Leak vulnerability in Juniper Junos
A Missing Release of Memory after Effective Lifetime vulnerability in Flexible PIC Concentrator (FPC) of Juniper Networks Junos OS allows an adjacent, unauthenticated attacker from the same shared physical or logical network, to cause a heap memory leak and leading to FPC crash.
low complexity
juniper CWE-401
6.5
2023-01-13 CVE-2023-22415 Out-of-bounds Write vulnerability in Juniper Junos
An Out-of-Bounds Write vulnerability in the H.323 ALG of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause Denial of Service (DoS).
network
low complexity
juniper CWE-787
7.5