Vulnerability Description
An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS on MX Series allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS). If specific traffic is received on MX Series and its rate exceeds the respective DDoS protection limit the ingress PFE will crash and restart. Continued receipt of this traffic will create a sustained DoS condition. This issue affects Juniper Networks Junos OS on MX Series: All versions prior to 19.1R3-S10; 19.2 versions prior to 19.2R3-S7; 19.3 versions prior to 19.3R3-S8; 19.4 versions prior to 19.4R3-S11; 20.2 versions prior to 20.2R3-S5; 20.4 versions prior to 20.4R3-S6; 21.1 versions prior to 21.1R3-S5; 21.2 versions prior to 21.2R3-S4; 21.3 versions prior to 21.3R3; 21.4 versions prior to 21.4R3; 22.1 versions prior to 22.1R2.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Juniper | Junos | < 19.1 |
| Juniper | Mx | - |
| Juniper | Mx10 | - |
| Juniper | Mx10000 | - |
| Juniper | Mx10003 | - |
| Juniper | Mx10008 | - |
| Juniper | Mx10016 | - |
| Juniper | Mx104 | - |
| Juniper | Mx150 | - |
| Juniper | Mx2008 | - |
| Juniper | Mx2010 | - |
| Juniper | Mx2020 | - |
| Juniper | Mx204 | - |
| Juniper | Mx240 | - |
| Juniper | Mx40 | - |
| Juniper | Mx480 | - |
| Juniper | Mx5 | - |
| Juniper | Mx80 | - |
| Juniper | Mx960 | - |
Related Weaknesses (CWE)
References
- https://supportportal.juniper.net/JSA70601Vendor Advisory
- https://supportportal.juniper.net/JSA70601Vendor Advisory
FAQ
What is CVE-2023-28976?
CVE-2023-28976 is a vulnerability with a CVSS score of 7.5 (HIGH). An Improper Check for Unusual or Exceptional Conditions vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS on MX Series allows an unauthenticated, network-based attacker ...
How severe is CVE-2023-28976?
CVE-2023-28976 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-28976?
Check the references section above for vendor advisories and patch information. Affected products include: Juniper Junos, Juniper Mx, Juniper Mx10, Juniper Mx10000, Juniper Mx10003.