An Improper Input Validation vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent unauthenticated attacker to cause DoS (Denial of Service). If another router generates more than one specific valid OSPFv3 LSA then rpd will crash while processing these LSAs. This issue only affects systems configured with OSPFv3, while OSPFv2 is not affected. This issue affects: Juniper Networks Junos OS 19.2 versions prior to 19.2R3-S6; 19.3 version 19.3R2 and later versions; 19.4 versions prior to 19.4R2-S8, 19.4R3-S9; 20.1 version 20.1R1 and later versions; 20.2 versions prior to 20.2R3-S5; 20.3 versions prior to 20.3R3-S5; 20.4 versions prior to 20.4R3-S4; 21.1 versions prior to 21.1R3-S2; 21.2 versions prior to 21.2R3-S1; 21.3 versions prior to 21.3R3-S2; 21.4 versions prior to 21.4R2. Juniper Networks Junos OS Evolved All versions prior to 20.4R3-S5-EVO; 21.1-EVO versions prior to 21.1R3-S2-EVO; 21.2-EVO versions prior to 21.2R3-S1-EVO; 21.3-EVO versions prior to 21.3R3-S2-EVO; 21.4-EVO versions prior to 21.4R2-EVO; 22.1-EVO versions prior to 22.1R2-EVO; 22.2-EVO versions prior to 22.2R2-EVO. This issue does not affect Juniper Networks Junos OS 19.2 versions prior to 19.2R2.
| Software | From | Fixed in |
|---|---|---|
| juniper / junos | 19.3 | 19.3.x |
| juniper / junos | 19.3-r1 | 19.3-r1.x |
| juniper / junos | 19.4-r1 | 19.4-r1.x |
| juniper / junos | 19.3-r1-s1 | 19.3-r1-s1.x |
| juniper / junos | 20.1-r1 | 20.1-r1.x |
| juniper / junos | 19.4-r1-s1 | 19.4-r1-s1.x |
| juniper / junos | 19.4-r1-s2 | 19.4-r1-s2.x |
| juniper / junos | 20.1-r1-s1 | 20.1-r1-s1.x |
| juniper / junos | 20.2-r1 | 20.2-r1.x |
| juniper / junos | 20.1-r1-s2 | 20.1-r1-s2.x |
| juniper / junos | 20.1-r1-s3 | 20.1-r1-s3.x |
| juniper / junos | 19.4-r2 | 19.4-r2.x |
| juniper / junos | 19.4-r2-s1 | 19.4-r2-s1.x |
| juniper / junos | 19.2-r2 | 19.2-r2.x |
| juniper / junos | 20.2-r1-s1 | 20.2-r1-s1.x |
| juniper / junos | 20.2-r1-s2 | 20.2-r1-s2.x |
| juniper / junos | 19.4-r2-s2 | 19.4-r2-s2.x |
| juniper / junos | 19.2-r3 | 19.2-r3.x |
| juniper / junos | 19.4-r3 | 19.4-r3.x |
| juniper / junos | 20.3-r1 | 20.3-r1.x |
| juniper / junos | 19.2-r2-s1 | 19.2-r2-s1.x |
| juniper / junos | 20.1-r1-s4 | 20.1-r1-s4.x |
| juniper / junos | 20.3-r1-s1 | 20.3-r1-s1.x |
| juniper / junos | 20.2-r1-s3 | 20.2-r1-s3.x |
| juniper / junos | 19.2-r3-s1 | 19.2-r3-s1.x |
| juniper / junos | 19.4-r3-s1 | 19.4-r3-s1.x |
| juniper / junos | 19.4-r2-s3 | 19.4-r2-s3.x |
| juniper / junos | 20.2-r2 | 20.2-r2.x |
| juniper / junos | 20.2-r2-s1 | 20.2-r2-s1.x |
| juniper / junos | 19.4-r1-s3 | 19.4-r1-s3.x |
| juniper / junos | 20.4-r1 | 20.4-r1.x |
| juniper / junos | 20.2-r2-s2 | 20.2-r2-s2.x |
| juniper / junos | 20.1-r2 | 20.1-r2.x |
| juniper / junos | 20.1-r2-s1 | 20.1-r2-s1.x |
| juniper / junos | 20.4-r1-s1 | 20.4-r1-s1.x |
| juniper / junos | 20.2-r2-s3 | 20.2-r2-s3.x |
| juniper / junos | 20.3-r2 | 20.3-r2.x |
| juniper / junos | 21.1-r1 | 21.1-r1.x |
| juniper / junos | 20.4-r2 | 20.4-r2.x |
| juniper / junos | 20.3-r2-s1 | 20.3-r2-s1.x |
| juniper / junos | 20.2-r3 | 20.2-r3.x |
| juniper / junos | 20.2-r3-s1 | 20.2-r3-s1.x |
| juniper / junos | 20.1-r3 | 20.1-r3.x |
| juniper / junos | 19.4-r3-s2 | 19.4-r3-s2.x |
| juniper / junos | 19.4-r3-s3 | 19.4-r3-s3.x |
| juniper / junos | 19.4-r3-s4 | 19.4-r3-s4.x |
| juniper / junos | 19.2-r3-s2 | 19.2-r3-s2.x |
| juniper / junos | 20.1-r2-s2 | 20.1-r2-s2.x |
| juniper / junos | 21.2-r1 | 21.2-r1.x |
| juniper / junos | 20.4-r2-s1 | 20.4-r2-s1.x |
| juniper / junos | 21.1-r1-s1 | 21.1-r1-s1.x |
| juniper / junos | 20.3-r3 | 20.3-r3.x |
| juniper / junos | 19.4-r2-s4 | 19.4-r2-s4.x |
| juniper / junos | 19.4-r3-s5 | 19.4-r3-s5.x |
| juniper / junos | 19.4-r1-s4 | 19.4-r1-s4.x |
| juniper / junos | 19.4-r2-s5 | 19.4-r2-s5.x |
| juniper / junos | 20.2-r3-s2 | 20.2-r3-s2.x |
| juniper / junos | 20.1-r3-s1 | 20.1-r3-s1.x |
| juniper / junos | 19.2-r3-s3 | 19.2-r3-s3.x |
| juniper / junos | 21.2-r1-s1 | 21.2-r1-s1.x |
| juniper / junos | 21.1-r2 | 21.1-r2.x |
| juniper / junos | 19.4-r3-s6 | 19.4-r3-s6.x |
| juniper / junos | 20.4-r3 | 20.4-r3.x |
| juniper / junos | 19.4 | 19.4.x |
| juniper / junos | 19.2-r3-s4 | 19.2-r3-s4.x |
| juniper / junos | 20.1-r3-s2 | 20.1-r3-s2.x |
| juniper / junos | 20.2-r3-s3 | 20.2-r3-s3.x |
| juniper / junos | 20.3-r3-s1 | 20.3-r3-s1.x |
| juniper / junos | 21.3-r1 | 21.3-r1.x |
| juniper / junos | 21.3-r2 | 21.3-r2.x |
| juniper / junos | 21.2-r2 | 21.2-r2.x |
| juniper / junos | 20.4-r3-s1 | 20.4-r3-s1.x |
| juniper / junos | 20.4-r2-s2 | 20.4-r2-s2.x |
| juniper / junos | 21.1-r3 | 21.1-r3.x |
| juniper / junos | 21.1-r2-s1 | 21.1-r2-s1.x |
| juniper / junos | 21.2 | 21.2.x |
| juniper / junos | 21.1 | 21.1.x |
| juniper / junos | 20.4 | 20.4.x |
| juniper / junos | 20.3 | 20.3.x |
| juniper / junos | 20.2 | 20.2.x |
| juniper / junos | 21.1-r2-s2 | 21.1-r2-s2.x |
| juniper / junos | 21.2-r1-s2 | 21.2-r1-s2.x |
| juniper / junos | 21.2-r2-s1 | 21.2-r2-s1.x |
| juniper / junos | 20.1-r3-s3 | 20.1-r3-s3.x |
| juniper / junos | 21.2-r2-s2 | 21.2-r2-s2.x |
| juniper / junos | 21.4-r1-s1 | 21.4-r1-s1.x |
| juniper / junos | 21.3-r1-s1 | 21.3-r1-s1.x |
| juniper / junos | 21.3-r1-s2 | 21.3-r1-s2.x |
| juniper / junos | 21.4-r1 | 21.4-r1.x |
| juniper / junos | 19.2-r3-s5 | 19.2-r3-s5.x |
| juniper / junos | 20.3-r3-s2 | 20.3-r3-s2.x |
| juniper / junos | 21.3-r2-s1 | 21.3-r2-s1.x |
| juniper / junos | 21.3-r2-s2 | 21.3-r2-s2.x |
| juniper / junos | 21.4-r1-s2 | 21.4-r1-s2.x |
| juniper / junos | 19.4-r2-s6 | 19.4-r2-s6.x |
| juniper / junos | 19.4-r3-s7 | 19.4-r3-s7.x |
| juniper / junos | 20.2-r3-s4 | 20.2-r3-s4.x |
| juniper / junos | 20.3-r1-s2 | 20.3-r1-s2.x |
| juniper / junos | 20.3-r3-s3 | 20.3-r3-s3.x |
| juniper / junos | 20.4-r3-s2 | 20.4-r3-s2.x |
| juniper / junos | 21.1-r3-s1 | 21.1-r3-s1.x |
| juniper / junos | 21.2-r3 | 21.2-r3.x |
| juniper / junos | 21.3-r3 | 21.3-r3.x |
| juniper / junos | 21.3-r3-s1 | 21.3-r3-s1.x |
| juniper / junos | 20.4-r3-s3 | 20.4-r3-s3.x |
| juniper / junos | 21.4 | 21.4.x |
| juniper / junos | 21.3 | 21.3.x |
| juniper / junos | 19.4-r3-s8 | 19.4-r3-s8.x |
| juniper / junos | 20.3-r3-s4 | 20.3-r3-s4.x |
| juniper / junos | 19.4-r2-s7 | 19.4-r2-s7.x |
| juniper / junos_os_evolved | 19.3-r1 | 19.3-r1.x |
| juniper / junos_os_evolved | 19.3-r2 | 19.3-r2.x |
| juniper / junos_os_evolved | 19.2-r1 | 19.2-r1.x |
| juniper / junos_os_evolved | 19.2-r2 | 19.2-r2.x |
| juniper / junos_os_evolved | 19.1-r1 | 19.1-r1.x |
| juniper / junos_os_evolved | 19.1-r2 | 19.1-r2.x |
| juniper / junos_os_evolved | 18.3-r1 | 18.3-r1.x |
| juniper / junos_os_evolved | 20.1-r1 | 20.1-r1.x |
| juniper / junos_os_evolved | 20.3-r1 | 20.3-r1.x |
| juniper / junos_os_evolved | 20.2-r1-s1 | 20.2-r1-s1.x |
| juniper / junos_os_evolved | 20.2-r1 | 20.2-r1.x |
| juniper / junos_os_evolved | 20.1-r1-s1 | 20.1-r1-s1.x |
| juniper / junos_os_evolved | 20.3-r1-s1 | 20.3-r1-s1.x |
| juniper / junos_os_evolved | 20.1-r2-s2 | 20.1-r2-s2.x |
| juniper / junos_os_evolved | 20.1-r2-s1 | 20.1-r2-s1.x |
| juniper / junos_os_evolved | 20.1-r2 | 20.1-r2.x |
| juniper / junos_os_evolved | 20.2-r2 | 20.2-r2.x |
| juniper / junos_os_evolved | 20.4-r1 | 20.4-r1.x |
| juniper / junos_os_evolved | 20.3-r2 | 20.3-r2.x |
| juniper / junos_os_evolved | 19.4-r1 | 19.4-r1.x |
| juniper / junos_os_evolved | 19.4-r1-s1 | 19.4-r1-s1.x |
| juniper / junos_os_evolved | 21.1-r1 | 21.1-r1.x |
| juniper / junos_os_evolved | 21.1-r2 | 21.1-r2.x |
| juniper / junos_os_evolved | 21.1-r1-s1 | 21.1-r1-s1.x |
| juniper / junos_os_evolved | 21.2-r1 | 21.2-r1.x |
| juniper / junos_os_evolved | 21.2-r1-s1 | 21.2-r1-s1.x |
| juniper / junos_os_evolved | 21.2-r2 | 21.2-r2.x |
| juniper / junos_os_evolved | 21.1 | 21.1.x |
| juniper / junos_os_evolved | 20.4-r1-s1 | 20.4-r1-s1.x |
| juniper / junos_os_evolved | 20.4-r1-s2 | 20.4-r1-s2.x |
| juniper / junos_os_evolved | 20.4-r2 | 20.4-r2.x |
| juniper / junos_os_evolved | 20.4-r2-s1 | 20.4-r2-s1.x |
| juniper / junos_os_evolved | 20.4-r2-s2 | 20.4-r2-s2.x |
| juniper / junos_os_evolved | 20.4-r2-s3 | 20.4-r2-s3.x |
| juniper / junos_os_evolved | 20.4-r3 | 20.4-r3.x |
| juniper / junos_os_evolved | 20.4-r3-s1 | 20.4-r3-s1.x |
| juniper / junos_os_evolved | 20.3 | 20.3.x |
| juniper / junos_os_evolved | 20.2-r2-s1 | 20.2-r2-s1.x |
| juniper / junos_os_evolved | 20.1-r2-s3 | 20.1-r2-s3.x |
| juniper / junos_os_evolved | 20.2 | 20.2.x |
| juniper / junos_os_evolved | 20.1 | 20.1.x |
| juniper / junos_os_evolved | 20.1-r2-s4 | 20.1-r2-s4.x |
| juniper / junos_os_evolved | 20.1-r2-s5 | 20.1-r2-s5.x |
| juniper / junos_os_evolved | 20.3-r1-s2 | 20.3-r1-s2.x |
| juniper / junos_os_evolved | 20.3-r1-s3 | 20.3-r1-s3.x |
| juniper / junos_os_evolved | 20.2-r3 | 20.2-r3.x |
| juniper / junos_os_evolved | 20.1-r3 | 20.1-r3.x |
| juniper / junos_os_evolved | 19.4-r2-s1 | 19.4-r2-s1.x |
| juniper / junos_os_evolved | 19.4-r2-s2 | 19.4-r2-s2.x |
| juniper / junos_os_evolved | 19.4-r2 | 19.4-r2.x |
| juniper / junos_os_evolved | 21.3-r1 | 21.3-r1.x |
| juniper / junos_os_evolved | 20.4 | 20.4.x |
| juniper / junos_os_evolved | 21.2 | 21.2.x |
| juniper / junos_os_evolved | 21.2-r1-s2 | 21.2-r1-s2.x |
| juniper / junos_os_evolved | 21.2-r2-s1 | 21.2-r2-s1.x |
| juniper / junos_os_evolved | 21.3-r1-s1 | 21.3-r1-s1.x |
| juniper / junos_os_evolved | 20.4-r3-s2 | 20.4-r3-s2.x |
| juniper / junos_os_evolved | 21.4-r1 | 21.4-r1.x |
| juniper / junos_os_evolved | 21.4-r1-s1 | 21.4-r1-s1.x |
| juniper / junos_os_evolved | 21.2-r2-s2 | 21.2-r2-s2.x |
| juniper / junos_os_evolved | 21.1-r3 | 21.1-r3.x |
| juniper / junos_os_evolved | 21.2-r3 | 21.2-r3.x |
| juniper / junos_os_evolved | 21.3-r2 | 21.3-r2.x |
| juniper / junos_os_evolved | 21.3 | 21.3.x |
| juniper / junos_os_evolved | 21.4 | 21.4.x |
| juniper / junos_os_evolved | 21.1-r3-s1 | 21.1-r3-s1.x |
| juniper / junos_os_evolved | 20.4-r3-s4 | 20.4-r3-s4.x |
| juniper / junos_os_evolved | 20.4-r3-s3 | 20.4-r3-s3.x |
| juniper / junos_os_evolved | 22.1-r1 | 22.1-r1.x |
| juniper / junos_os_evolved | 22.2-r1 | 22.2-r1.x |
| juniper / junos_os_evolved | 21.3-r3 | 21.3-r3.x |