CVE-2024-47493

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Oct 11, 2024
Updated: Oct 15, 2024
CWE ID 401

Summary

CVE-2024-47493 identifies a vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks' Junos OS, affecting SRX5K, SRX4600, and MX Series platforms with Trio-based FPCs. This flaw allows an unauthenticated adjacent attacker to execute Denial of Service (DoS) attacks through repeated physical interface flap operations, which cause memory leaks and can eventually crash the local FPC due to exhaustion of available memory. The severity rating for this vulnerability is medium, with an exploitability score of 2.8 and significant availability impact. To monitor the issue, network administrators can use the command show chassis fpc to check memory usage over time. Remediation steps have not been specified in the provided information; therefore, it is advisable for affected organizations to consult Juniper's support portal for further guidance.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share