CVE-2024-21591

CVSS 3.1 Score 9.8 of 10 (high)

Details

Published Jan 12, 2024
Updated: Feb 10, 2024
CWE ID 787

Summary

CVE-2024-21591 is a critical Out-of-bounds Write vulnerability impacting Juniper Networks Junos OS on SRX Series and EX Series. An unauthenticated attacker can exploit this issue to cause a Denial of Service (DoS) or execute remote code and gain root privileges on the device. The vulnerability arises due to the use of an insecure function that allows an attacker to overwrite arbitrary memory. Affected versions include Junos OS 20.4R3 and later, up to 22.4R3. Junos OS 21.2, 21.3, 21.4, 22.1, 22.2, and 22.3 are also impacted by this issue. Immediate patching is recommended to prevent potential attacks.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share