CVE-2023-44193
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Summary
CVE-2023-44193 is a local vulnerability in Juniper Networks Junos OS's Packet Forwarding Engine (PFE), which can cause a Fault Processing Unit (FPC) crash on MX Series routers. This occurs when Connectivity-Fault-Management (CFM) is enabled in a Virtual Private LAN Service (VPLS) scenario and a specific LDP command is executed. The FPC reboot leads to a Denial of Service (DoS) condition, and repeated execution of the command can sustain this condition. Affected versions of Junos OS include all releases prior to 20.4R3-S7, 21.1 versions prior to 21.1R3-S5, 21.2 versions prior to 21.2R3-S4, 21.3 versions prior to 21.3R3-S4, 21.4 versions prior to 21.4R3-S3, 22.1 versions prior to 22.1R3-S1, 22.2 versions prior to 22.2R2-S1, 22.2R3, 22.3 versions prior to 22.3R1-S2, and 22.3R2.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.