CVE-2024-21587
Last modified
CVE-2024-21587 is a medium-severity vulnerability rated 6.5/10 on the CVSS scale. An Improper Handling of Exceptional Conditions vulnerability in the broadband edge subscriber management daemon (bbe-smgd) of Juniper Networks Junos OS on MX Series allows an attacker directly connected to the vulnerable system who repeatedly flaps DHCP subscriber sessions to cause a slow memory leak, ultimately leading to a Denial of Service (DoS). Memory can only be recovered by manually restarting bbe-smgd. This issue only occurs if BFD liveness detection for DHCP subscribers is enabled. EPSS estimates a 0.28% chance of exploitation in the next 30 days.
Description
An Improper Handling of Exceptional Conditions vulnerability in the broadband edge subscriber management daemon (bbe-smgd) of Juniper Networks Junos OS on MX Series allows an attacker directly connected to the vulnerable system who repeatedly flaps DHCP subscriber sessions to cause a slow memory leak, ultimately leading to a Denial of Service (DoS). Memory can only be recovered by manually restarting bbe-smgd. This issue only occurs if BFD liveness detection for DHCP subscribers is enabled. Systems without BFD liveness detection enabled are not vulnerable to this issue. Indication of the issue can be observed by periodically executing the 'show system processes extensive' command, which will indicate an increase in memory allocation for bbe-smgd. A small amount of memory is leaked every time a DHCP subscriber logs in, which will become visible over time, ultimately leading to memory starvation. user@junos> show system processes extensive | match bbe-smgd 13071 root 24 0 415M 201M select 0 0:41 7.28% bbe-smgd{bbe-smgd} 13071 root 20 0 415M 201M select 1 0:04 0.00% bbe-smgd{bbe-smgd} ... user@junos> show system processes extensive | match bbe-smgd 13071 root 20 0 420M 208M select 0 4:33 0.10% bbe-smgd{bbe-smgd} 13071 root 20 0 420M 208M select 0 0:12 0.00% bbe-smgd{bbe-smgd} ... This issue affects Juniper Networks Junos OS on MX Series: * All versions earlier than 20.4R3-S9; * 21.2 versions earlier than 21.2R3-S7; * 21.3 versions earlier than 21.3R3-S5; * 21.4 versions earlier than 21.4R3-S5; * 22.1 versions earlier than 22.1R3-S4; * 22.2 versions earlier than 22.2R3-S3; * 22.3 versions earlier than 22.3R3-S2; * 22.4 versions earlier than 22.4R2-S2, 22.4R3; * 23.2 versions earlier than 23.2R1-S1, 23.2R2.
Metrics
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Juniper | Junos | 20.4 | — |
| Juniper | Junos | 21.2 | — |
| Juniper | Junos | 21.3 | — |
| Juniper | Junos | 21.4 | — |
| Juniper | Junos | 22.1 | — |
| Juniper | Junos | 22.2 | — |
| Juniper | Junos | 22.3 | — |
| Juniper | Junos | 22.4 | — |
| Juniper | Junos | 23.2 | R1 |
References
- https://supportportal.juniper.net/JSA75725Vendor Advisory
- https://supportportal.juniper.net/JSA75725Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2024-21587?
How severe is CVE-2024-21587?
How do I fix CVE-2024-21587?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-21576ComfyUI-Bmad-Nodes is vulnerable to Code Injection. The issu…10
- CVE-2024-21577ComfyUI-Ace-Nodes is vulnerable to Code Injection. The ACE_E…10
- CVE-2024-21583Versions of the package github.com/gitpod-io/gitpod/componen…4.1
- CVE-2024-21584Pleasanter 1.3.49.0 and earlier contains a cross-site script…6.1
- CVE-2024-21585 An Improper Handling of Exceptional Conditions vulnerabilit…5.9
- CVE-2024-21586An Improper Check for Unusual or Exceptional Conditions vuln…7.5
- CVE-2024-21589 An Improper Access Control vulnerability in the Juniper Net…7.5
- CVE-2024-2159The Social Sharing Plugin WordPress plugin before 3.3.61 do…4.7
- CVE-2024-21590An Improper Input Validation vulnerability in Juniper Tunnel…6.5
- CVE-2024-21591 An Out-of-bounds Write vulnerability in J-Web of Juniper Ne…9.8
- CVE-2024-21593An Improper Check or Handling of Exceptional Conditions vuln…7.1
- CVE-2024-21594 A Heap-based Buffer Overflow vulnerability in the Network S…5.5
Are you affected by CVE-2024-21587?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
