CVE-2024-21609
Last modified
CVE-2024-21609 is a high-severity vulnerability rated 7.1/10 on the CVSS scale. A Missing Release of Memory after Effective Lifetime vulnerability in the IKE daemon (iked) of Juniper Networks Junos OS on MX Series with SPC3, and SRX Series allows an administratively adjacent attacker which is able to successfully establish IPsec tunnels to cause a Denial of Service (DoS). If specific values for the IPsec parameters local-ip, remote-ip, remote ike-id, and traffic selectors are sent from the peer, a memory leak occurs during every IPsec SA rekey which is carried out with a specific message sequence. This will eventually result in an iked process crash and restart. The iked process memory consumption can be checked using the below command: user@host> show system processes extensive | grep iked PID USERNAME PRI NICE SIZE RES STATE C TIME WCPU COMMAND 56903 root 31 0 4016M 2543M CPU0 0 2:10 10.50% iked This issue affects Juniper Networks Junos OS: * All versions earlier than 20.4R3-S9; * 21.2 versions earlier than 21.2R3-S7; * 21.3 versions earlier than 21.3R3-S5; * 21.4 versions earlier than 21.4R3-S4; * 22.1 versions earlier than 22.1R3-S3; * 22.2 versions earlier than 22.2R3-S2; * 22.3 versions earlier than 22.3R3; * 22.4 versions earlier than 22.4R3; * 23.2 versions earlier than 23.2R1-S2, 23.2R2.. EPSS estimates a 0.29% chance of exploitation in the next 30 days.
Description
A Missing Release of Memory after Effective Lifetime vulnerability in the IKE daemon (iked) of Juniper Networks Junos OS on MX Series with SPC3, and SRX Series allows an administratively adjacent attacker which is able to successfully establish IPsec tunnels to cause a Denial of Service (DoS). If specific values for the IPsec parameters local-ip, remote-ip, remote ike-id, and traffic selectors are sent from the peer, a memory leak occurs during every IPsec SA rekey which is carried out with a specific message sequence. This will eventually result in an iked process crash and restart. The iked process memory consumption can be checked using the below command: user@host> show system processes extensive | grep iked PID USERNAME PRI NICE SIZE RES STATE C TIME WCPU COMMAND 56903 root 31 0 4016M 2543M CPU0 0 2:10 10.50% iked This issue affects Juniper Networks Junos OS: * All versions earlier than 20.4R3-S9; * 21.2 versions earlier than 21.2R3-S7; * 21.3 versions earlier than 21.3R3-S5; * 21.4 versions earlier than 21.4R3-S4; * 22.1 versions earlier than 22.1R3-S3; * 22.2 versions earlier than 22.2R3-S2; * 22.3 versions earlier than 22.3R3; * 22.4 versions earlier than 22.4R3; * 23.2 versions earlier than 23.2R1-S2, 23.2R2.
Metrics
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Juniper | Junos | < 20.4 |
| Juniper | Junos | 20.4 |
| Juniper | Junos | 21.2 |
| Juniper | Junos | 21.3 |
| Juniper | Junos | 21.4 |
| Juniper | Junos | 22.1 |
| Juniper | Junos | 22.2 |
| Juniper | Junos | 22.3 |
| Juniper | Junos | 22.4 |
| Juniper | Junos | 23.2 |
References
- http://supportportal.juniper.net/JSA75750Vendor Advisory
- http://supportportal.juniper.net/JSA75750Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2024-21609?
How severe is CVE-2024-21609?
How do I fix CVE-2024-21609?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-21602 A NULL Pointer Dereference vulnerability in Juniper Network…7.5
- CVE-2024-21603 An Improper Check for Unusual or Exceptional Conditions vul…6.5
- CVE-2024-21604 An Allocation of Resources Without Limits or Throttling vul…7.5
- CVE-2024-21605An Exposure of Resource to Wrong Sphere vulnerability in the…7.1
- CVE-2024-21606 A Double Free vulnerability in the flow processing daemon (…7.5
- CVE-2024-21607 An Unsupported Feature in the UI vulnerability in Juniper N…5.3
- CVE-2024-2161Use of Hard-coded Credentials in Kiloview NDI allows un-auth…9.8
- CVE-2024-21610An Improper Handling of Exceptional Conditions vulnerability…4.3
- CVE-2024-21611 A Missing Release of Memory after Effective Lifetime vulner…7.5
- CVE-2024-21612 An Improper Handling of Syntactically Invalid Structure…7.5
- CVE-2024-21613 A Missing Release of Memory after Effective Lifetime vulner…6.5
- CVE-2024-21614 An Improper Check for Unusual or Exceptional Conditions vul…7.5
Are you affected by CVE-2024-21609?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
