Vulnerabilities > Juniper > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-01-13 CVE-2023-22398 Access of Uninitialized Pointer vulnerability in Juniper Junos 15.1/19.1/19.2
An Access of Uninitialized Pointer vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a locally authenticated attacker with low privileges to cause a Denial of Service (DoS).
local
low complexity
juniper CWE-824
5.5
2023-01-13 CVE-2023-22402 Use After Free vulnerability in Juniper Junos OS Evolved
A Use After Free vulnerability in the kernel of Juniper Networks Junos OS Evolved allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS).
network
high complexity
juniper CWE-416
5.9
2023-01-13 CVE-2023-22404 Out-of-bounds Write vulnerability in Juniper Junos
An Out-of-bounds Write vulnerability in the Internet Key Exchange Protocol daemon (iked) of Juniper Networks Junos OS on SRX series and MX with SPC3 allows an authenticated, network-based attacker to cause a Denial of Service (DoS).
network
low complexity
juniper CWE-787
6.5
2023-01-13 CVE-2023-22405 Unspecified vulnerability in Juniper Junos
An Improper Preservation of Consistency Between Independent Representations of Shared State vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS) to device due to out of resources.
low complexity
juniper
6.5
2023-01-13 CVE-2023-22406 Memory Leak vulnerability in Juniper Junos
A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS).
low complexity
juniper CWE-401
6.5
2023-01-13 CVE-2023-22407 Incomplete Cleanup vulnerability in Juniper Junos
An Incomplete Cleanup vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS).
low complexity
juniper CWE-459
6.5
2023-01-13 CVE-2023-22409 Improper Validation of Specified Quantity in Input vulnerability in Juniper Junos
An Unchecked Input for Loop Condition vulnerability in a NAT library of Juniper Networks Junos OS allows a local authenticated attacker with low privileges to cause a Denial of Service (DoS).
local
low complexity
juniper CWE-1284
5.5
2023-01-13 CVE-2023-22410 Memory Leak vulnerability in Juniper Junos
A Missing Release of Memory after Effective Lifetime vulnerability in the Juniper Networks Junos OS on MX Series platforms with MPC10/MPC11 line cards, allows an unauthenticated adjacent attacker to cause a Denial of Service (DoS).
low complexity
juniper CWE-401
6.5
2023-01-13 CVE-2023-22414 Memory Leak vulnerability in Juniper Junos
A Missing Release of Memory after Effective Lifetime vulnerability in Flexible PIC Concentrator (FPC) of Juniper Networks Junos OS allows an adjacent, unauthenticated attacker from the same shared physical or logical network, to cause a heap memory leak and leading to FPC crash.
low complexity
juniper CWE-401
6.5
2022-10-18 CVE-2022-22208 Race Condition vulnerability in Juniper Junos
A Use After Free vulnerability in the Routing Protocol Daemon (rdp) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker to cause Denial of Service (DoS).
network
high complexity
juniper CWE-362
5.9