CVE-2023-36833
Last modified
CVE-2023-36833 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. A Use After Free vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS Evolved on PTX10001-36MR, and PTX10004, PTX10008, PTX10016 with LC1201/1202 allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS). The process 'aftman-bt' will crash after multiple flaps on a multicast-only fast reroute (MoFRR) enabled interface. This will cause the respective FPC to stop forwarding traffic and it needs to be rebooted to restore the service. An indication that the system experienced this issue is the following log message: <date> <hostname> evo-aftmand-bt[<pid>]: [Error] jexpr_fdb: sanity check failed, ... EPSS estimates a 0.28% chance of exploitation in the next 30 days.
Description
A Use After Free vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS Evolved on PTX10001-36MR, and PTX10004, PTX10008, PTX10016 with LC1201/1202 allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS). The process 'aftman-bt' will crash after multiple flaps on a multicast-only fast reroute (MoFRR) enabled interface. This will cause the respective FPC to stop forwarding traffic and it needs to be rebooted to restore the service. An indication that the system experienced this issue is the following log message: <date> <hostname> evo-aftmand-bt[<pid>]: [Error] jexpr_fdb: sanity check failed, ... , app_name L3 Mcast Routes This issue affects Juniper Networks Junos OS Evolved on PTX10001-36MR, PTX10004, PTX10008, PTX10016 with LC1201/1202: 21.2 version 21.2R1-EVO and later versions; 21.3 version 21.3R1-EVO and later versions; 21.4 versions prior to 21.4R3-S3-EVO; 22.1 version 22.1R1-EVO and later versions; 22.2 versions prior to 22.2R3-S2-EVO; 22.3 versions prior to 22.3R3-EVO; 22.4 versions prior to 22.4R1-S2-EVO, 22.4R2-EVO.
Metrics
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Juniper | Junos Os Evolved | 21.2 | — |
| Juniper | Junos Os Evolved | 21.3 | — |
| Juniper | Junos Os Evolved | 21.4 | — |
| Juniper | Junos Os Evolved | 22.1 | R1 |
| Juniper | Junos Os Evolved | 22.2 | R1 |
| Juniper | Junos Os Evolved | 22.3 | R1 |
| Juniper | Junos Os Evolved | 22.4 | R1 |
References
- https://supportportal.juniper.net/JSA71640Vendor Advisory
- https://supportportal.juniper.net/JSA71640Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-36833?
How severe is CVE-2023-36833?
How do I fix CVE-2023-36833?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2023
- CVE-2023-36828Statamic is a flat-first, Laravel and Git powered content ma…5.4
- CVE-2023-36829Sentry is an error tracking and performance monitoring platf…5.4
- CVE-2023-3683A vulnerability has been found in LivelyWorks Articart 2.0.1…5.4
- CVE-2023-36830SQLFluff is a SQL linter. Prior to version 2.1.2, in environ…7.8
- CVE-2023-36831An Improper Check or Handling of Exceptional Conditions vuln…7.5
- CVE-2023-36832An Improper Handling of Exceptional Conditions vulnerability…7.5
- CVE-2023-36834An Incomplete Internal State Distinction vulnerability in th…6.5
- CVE-2023-36835An Improper Check for Unusual or Exceptional Conditions vuln…7.5
- CVE-2023-36836A Use of an Uninitialized Resource vulnerability in the rout…4.7
- CVE-2023-36838An Out-of-bounds Read vulnerability in the flow processing d…5.5
- CVE-2023-36839 An Improper Validation of Specified Quantity in Input vulne…6.5
- CVE-2023-3684A vulnerability was found in LivelyWorks Articart 2.0.1 and …6.1
Are you affected by CVE-2023-36833?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
