CVE-2024-30395
Last modified
CVE-2024-30395 is a high-severity vulnerability rated 8.7/10 on the CVSS scale. An Improper Validation of Specified Type of Input vulnerability in Routing Protocol Daemon (RPD) of Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause Denial of Service (DoS). If a BGP update is received over an established BGP session which contains a tunnel encapsulation attribute with a specifically malformed TLV, rpd will crash and restart. This issue affects: Junos OS: * all versions before 21.2R3-S7, * from 21.3 before 21.3R3-S5, * from 21.4 before 21.4R3-S5, * from 22.1 before 22.1R3-S5, * from 22.2 before 22.2R3-S3, * from 22.3 before 22.3R3-S2, * from 22.4 before 22.4R3, * from 23.2 before 23.2R1-S2, 23.2R2. Junos OS Evolved: * all versions before 21.2R3-S7-EVO, * from 21.3-EVO before 21.3R3-S5-EVO, * from 21.4-EVO before 21.4R3-S5-EVO, * from 22.2-EVO before 22.2R3-S3-EVO, * from 22.3-EVO before 22.3R3-S2-EVO, * from 22.4-EVO before 22.4R3-EVO, * from 23.2-EVO before 23.2R1-S2-EVO, 23.2R2-EVO. This is a related but separate issue than the one described in JSA75739. EPSS estimates a 0.54% chance of exploitation in the next 30 days.
Description
An Improper Validation of Specified Type of Input vulnerability in Routing Protocol Daemon (RPD) of Junos OS and Junos OS Evolved allows an unauthenticated, network-based attacker to cause Denial of Service (DoS). If a BGP update is received over an established BGP session which contains a tunnel encapsulation attribute with a specifically malformed TLV, rpd will crash and restart. This issue affects: Junos OS: * all versions before 21.2R3-S7, * from 21.3 before 21.3R3-S5, * from 21.4 before 21.4R3-S5, * from 22.1 before 22.1R3-S5, * from 22.2 before 22.2R3-S3, * from 22.3 before 22.3R3-S2, * from 22.4 before 22.4R3, * from 23.2 before 23.2R1-S2, 23.2R2. Junos OS Evolved: * all versions before 21.2R3-S7-EVO, * from 21.3-EVO before 21.3R3-S5-EVO, * from 21.4-EVO before 21.4R3-S5-EVO, * from 22.2-EVO before 22.2R3-S3-EVO, * from 22.3-EVO before 22.3R3-S2-EVO, * from 22.4-EVO before 22.4R3-EVO, * from 23.2-EVO before 23.2R1-S2-EVO, 23.2R2-EVO. This is a related but separate issue than the one described in JSA75739
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Juniper | Junos | < 21.2 |
| Juniper | Junos | 21.2 |
| Juniper | Junos | 21.3 |
| Juniper | Junos | 21.4 |
| Juniper | Junos | 22.1 |
| Juniper | Junos | 22.2 |
| Juniper | Junos | 22.3 |
| Juniper | Junos | 22.4 |
| Juniper | Junos | 23.2 |
| Juniper | Junos Os Evolved | < 21.2 |
| Juniper | Junos Os Evolved | 21.2 |
| Juniper | Junos Os Evolved | 21.3 |
| Juniper | Junos Os Evolved | 21.4 |
| Juniper | Junos Os Evolved | 22.2 |
| Juniper | Junos Os Evolved | 22.3 |
| Juniper | Junos Os Evolved | 22.4 |
| Juniper | Junos Os Evolved | 23.2 |
References
- https://supportportal.juniper.net/JSA79095Vendor Advisory
- https://supportportal.juniper.net/JSA79095Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2024-30395?
How severe is CVE-2024-30395?
How do I fix CVE-2024-30395?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-30389An Incorrect Behavior Order vulnerability in the Packet Forw…6.9
- CVE-2024-3039A vulnerability classified as critical has been found in Sha…9.8
- CVE-2024-30390An Improper Restriction of Excessive Authentication Attempts…6.9
- CVE-2024-30391A Missing Authentication for Critical Function vulnerability…6.3
- CVE-2024-30392A Stack-based Buffer Overflow vulnerability in Flow Processi…8.7
- CVE-2024-30394A Stack-based Buffer Overflow vulnerability in the Routing P…8.7
- CVE-2024-30397An Improper Check for Unusual or Exceptional Conditions vuln…8.7
- CVE-2024-30398An Improper Restriction of Operations within the Bounds of a…8.7
- CVE-2024-3040A vulnerability, which was classified as critical, was found…9.8
- CVE-2024-30401An Out-of-bounds Read vulnerability in the advanced forwardi…8.2
- CVE-2024-30402An Improper Check for Unusual or Exceptional Conditions vuln…5.3
- CVE-2024-30403A NULL Pointer Dereference vulnerability in the Packet Forwa…7.1
Are you affected by CVE-2024-30395?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
