CVE-2024-39562
Last modified
CVE-2024-39562 is a high-severity vulnerability rated 8.7/10 on the CVSS scale. A Missing Release of Resource after Effective Lifetime vulnerability the xinetd process, responsible for spawning SSH daemon (sshd) instances, of Juniper Networks Junos OS Evolved allows an unauthenticated network-based attacker to cause a Denial of Service (DoS) by blocking SSH access for legitimate users. Continued receipt of these connections will create a sustained Denial of Service (DoS) condition. The issue is triggered when a high rate of concurrent SSH requests are received and terminated in a specific way, causing xinetd to crash, and leaving defunct sshd processes. EPSS estimates a 0.43% chance of exploitation in the next 30 days.
Description
A Missing Release of Resource after Effective Lifetime vulnerability the xinetd process, responsible for spawning SSH daemon (sshd) instances, of Juniper Networks Junos OS Evolved allows an unauthenticated network-based attacker to cause a Denial of Service (DoS) by blocking SSH access for legitimate users. Continued receipt of these connections will create a sustained Denial of Service (DoS) condition. The issue is triggered when a high rate of concurrent SSH requests are received and terminated in a specific way, causing xinetd to crash, and leaving defunct sshd processes. Successful exploitation of this vulnerability blocks both SSH access as well as services which rely upon SSH, such as SFTP, and Netconf over SSH. Once the system is in this state, legitimate users will be unable to SSH to the device until service is manually restored. See WORKAROUND section below. Administrators can monitor an increase in defunct sshd processes by utilizing the CLI command: > show system processes | match sshd root 25219 30901 0 Jul16 ? 00:00:00 [sshd] <defunct> This issue affects Juniper Networks Junos OS Evolved: * All versions prior to 21.4R3-S7-EVO * 22.3-EVO versions prior to 22.3R2-S2-EVO, 22.3R3-S2-EVO; * 22.4-EVO versions prior to 22.4R3-EVO; * 23.2-EVO versions prior to 23.2R2-EVO. This issue does not affect Juniper Networks Junos OS Evolved 22.1-EVO nor 22.2-EVO.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Juniper | Junos Os Evolved | < 21.4 |
| Juniper | Junos Os Evolved | 21.4 |
| Juniper | Junos Os Evolved | 22.3 |
| Juniper | Junos Os Evolved | 22.4 |
| Juniper | Junos Os Evolved | 23.2 |
References
- https://supportportal.juniper.net/JSA75724Vendor Advisory
- https://supportportal.juniper.net/JSA75724Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Analyzed
Frequently Asked Questions
What is CVE-2024-39562?
How severe is CVE-2024-39562?
How do I fix CVE-2024-39562?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2024
- CVE-2024-39557An Uncontrolled Resource Consumption vulnerability in the …7.1
- CVE-2024-39558An Unchecked Return Value vulnerability in the Routing Proto…7.1
- CVE-2024-39559An Improper Check for Unusual or Exceptional Conditions vuln…8.2
- CVE-2024-3956The Pods – Custom Content Types and Fields plugin for WordPr…5.4
- CVE-2024-39560An Improper Handling of Exceptional Conditions vulnerability…7.1
- CVE-2024-39561An Improper Check for Unusual or Exceptional Conditions vuln…6.9
- CVE-2024-39563A Command Injection vulnerability in Juniper Networks Junos …7.3
- CVE-2024-39564This is a similar, but different vulnerability than the issu…8.7
- CVE-2024-39565An Improper Neutralization of Data within XPath Expressions …8.8
- CVE-2024-39567A vulnerability has been identified in SINEMA Remote Connect…8.5
- CVE-2024-39568A vulnerability has been identified in SINEMA Remote Connect…7.8
- CVE-2024-39569A vulnerability has been identified in SINEMA Remote Connect…7.2
Are you affected by CVE-2024-39562?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
