Vulnerability Database

289,784

Total vulnerabilities in the database

CVE-2022-22201

An Improper Validation of Specified Index, Position, or Offset in Input vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS allows an unauthenticated network-based attacker to cause a Denial of Service (DoS). On SRX5000 Series with SPC3, SRX4000 Series, and vSRX, when PowerMode IPsec is configured and a malformed ESP packet matching an established IPsec tunnel is received the PFE crashes. This issue affects Juniper Networks Junos OS on SRX5000 Series with SPC3, SRX4000 Series, and vSRX: All versions prior to 19.4R2-S6, 19.4R3-S7; 20.1 versions prior to 20.1R3-S3; 20.2 versions prior to 20.2R3-S4; 20.3 versions prior to 20.3R3-S3; 20.4 versions prior to 20.4R3-S2; 21.1 versions prior to 21.1R3; 21.2 versions prior to 21.2R3; 21.3 versions prior to 21.3R1-S2, 21.3R2.

  • Published: Oct 18, 2022
  • Updated: Apr 14, 2023
  • CVE: CVE-2022-22201
  • Severity: High
  • Exploit:

CVSS v3:

  • Severity: High
  • Score: 7.5
  • AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CWEs:

Software From Fixed in
juniper / junos - 19.4
juniper / junos 19.4-r3-s7 19.4-r3-s7.x
juniper / junos 19.4-r2-s4 19.4-r2-s4.x
juniper / junos 19.4-r1-s4 19.4-r1-s4.x
juniper / junos 19.4-r2-s5 19.4-r2-s5.x
juniper / junos 19.4 19.4.x
juniper / junos 19.4-r1-s1 19.4-r1-s1.x
juniper / junos 19.4-r1-s2 19.4-r1-s2.x
juniper / junos 19.4-r1 19.4-r1.x
juniper / junos 19.4-r2 19.4-r2.x
juniper / junos 19.4-r2-s1 19.4-r2-s1.x
juniper / junos 19.4-r2-s2 19.4-r2-s2.x
juniper / junos 19.4-r2-s3 19.4-r2-s3.x
juniper / junos 19.4-r1-s3 19.4-r1-s3.x
juniper / junos 20.1-r2 20.1-r2.x
juniper / junos 20.1-r2-s1 20.1-r2-s1.x
juniper / junos 20.1-r3 20.1-r3.x
juniper / junos 20.1-r2-s2 20.1-r2-s2.x
juniper / junos 20.1-r1-s4 20.1-r1-s4.x
juniper / junos 20.1-r1 20.1-r1.x
juniper / junos 20.1-r1-s2 20.1-r1-s2.x
juniper / junos 20.1-r1-s3 20.1-r1-s3.x
juniper / junos 20.1-r1-s1 20.1-r1-s1.x
juniper / junos 20.1-r3-s2 20.1-r3-s2.x
juniper / junos 20.1-r3-s1 20.1-r3-s1.x
juniper / junos 20.1 20.1.x
juniper / junos 20.2 20.2.x
juniper / junos 20.2-r3-s2 20.2-r3-s2.x
juniper / junos 20.2-r3-s3 20.2-r3-s3.x
juniper / junos 20.2-r1 20.2-r1.x
juniper / junos 20.2-r1-s1 20.2-r1-s1.x
juniper / junos 20.2-r1-s2 20.2-r1-s2.x
juniper / junos 20.2-r3 20.2-r3.x
juniper / junos 20.2-r3-s1 20.2-r3-s1.x
juniper / junos 20.2-r2-s3 20.2-r2-s3.x
juniper / junos 20.2-r1-s3 20.2-r1-s3.x
juniper / junos 20.2-r2-s2 20.2-r2-s2.x
juniper / junos 20.2-r2 20.2-r2.x
juniper / junos 20.2-r2-s1 20.2-r2-s1.x
juniper / junos 20.3-r2 20.3-r2.x
juniper / junos 20.3-r2-s1 20.3-r2-s1.x
juniper / junos 20.3-r1-s1 20.3-r1-s1.x
juniper / junos 20.3-r1 20.3-r1.x
juniper / junos 20.3-r3-s1 20.3-r3-s1.x
juniper / junos 20.3-r3 20.3-r3.x
juniper / junos 20.3 20.3.x
juniper / junos 20.3-r1-s2 20.3-r1-s2.x
juniper / junos 20.3-r3-s2 20.3-r3-s2.x
juniper / junos 20.4 20.4.x
juniper / junos 20.4-r3-s1 20.4-r3-s1.x
juniper / junos 20.4-r2-s2 20.4-r2-s2.x
juniper / junos 20.4-r3 20.4-r3.x
juniper / junos 20.4-r2-s1 20.4-r2-s1.x
juniper / junos 20.4-r2 20.4-r2.x
juniper / junos 20.4-r1 20.4-r1.x
juniper / junos 20.4-r1-s1 20.4-r1-s1.x
juniper / junos 21.1-r1 21.1-r1.x
juniper / junos 21.1-r1-s1 21.1-r1-s1.x
juniper / junos 21.1-r2 21.1-r2.x
juniper / junos 21.1-r2-s1 21.1-r2-s1.x
juniper / junos 21.1 21.1.x
juniper / junos 21.1-r2-s2 21.1-r2-s2.x
juniper / junos 21.2-r1-s2 21.2-r1-s2.x
juniper / junos 21.2 21.2.x
juniper / junos 21.2-r2 21.2-r2.x
juniper / junos 21.2-r1-s1 21.2-r1-s1.x
juniper / junos 21.2-r1 21.2-r1.x
juniper / junos 21.3-r1 21.3-r1.x
juniper / junos 21.3-r2 21.3-r2.x
juniper / junos 21.3-r1-s1 21.3-r1-s1.x