Total vulnerabilities in the database
An Improper Neutralization of Equivalent Special Elements vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on PTX Series allows a unauthenticated, adjacent attacker to cause a Denial of Service (DoS).
When MPLS packets are meant to be sent to a flexible tunnel interface (FTI) and if the FTI tunnel is down, these will hit the reject NH, due to which the packets get sent to the CPU and cause a host path wedge condition. This will cause the FPC to hang and requires a manual restart to recover.
Please note that this issue specifically affects PTX1000, PTX3000, PTX5000 with FPC3, PTX10002-60C, and PTX10008/16 with LC110x. Other PTX Series devices and Line Cards (LC) are not affected.
The following log message can be seen when the issue occurs:
Cmerror Op Set: Host Loopback: HOST LOOPBACK WEDGE DETECTED IN PATH ID <id> (URI: /fpc/<fpc>/pfe/<pfe>/cm/<cm>/Host_Loopback/<cm>/HOST_LOOPBACK_MAKE_CMERROR_ID[<id>]) This issue affects Juniper Networks Junos OS:
Software | From | Fixed in |
---|---|---|
juniper / junos | 20.4-r1 | 20.4-r1.x |
juniper / junos | 20.4-r1-s1 | 20.4-r1-s1.x |
juniper / junos | 20.4-r2 | 20.4-r2.x |
juniper / junos | 20.4-r2-s1 | 20.4-r2-s1.x |
juniper / junos | 20.4-r3 | 20.4-r3.x |
juniper / junos | 20.4-r3-s1 | 20.4-r3-s1.x |
juniper / junos | 20.4-r2-s2 | 20.4-r2-s2.x |
juniper / junos | 20.4 | 20.4.x |
juniper / junos | 20.4-r3-s2 | 20.4-r3-s2.x |
juniper / junos | 20.4-r3-s3 | 20.4-r3-s3.x |
juniper / junos | 20.4-r3-s4 | 20.4-r3-s4.x |
juniper / junos | 20.4-r3-s5 | 20.4-r3-s5.x |
juniper / junos | 20.4-r3-s6 | 20.4-r3-s6.x |
juniper / junos | 20.4-r3-s7 | 20.4-r3-s7.x |
juniper / junos | 21.1-r1 | 21.1-r1.x |
juniper / junos | 21.1-r1-s1 | 21.1-r1-s1.x |
juniper / junos | 21.1-r2 | 21.1-r2.x |
juniper / junos | 21.1-r3 | 21.1-r3.x |
juniper / junos | 21.1-r2-s1 | 21.1-r2-s1.x |
juniper / junos | 21.1 | 21.1.x |
juniper / junos | 21.1-r2-s2 | 21.1-r2-s2.x |
juniper / junos | 21.1-r3-s1 | 21.1-r3-s1.x |
juniper / junos | 21.1-r3-s2 | 21.1-r3-s2.x |
juniper / junos | 21.1-r3-s3 | 21.1-r3-s3.x |
juniper / junos | 21.2-r1 | 21.2-r1.x |
juniper / junos | 21.2-r1-s1 | 21.2-r1-s1.x |
juniper / junos | 21.2-r2 | 21.2-r2.x |
juniper / junos | 21.2 | 21.2.x |
juniper / junos | 21.2-r1-s2 | 21.2-r1-s2.x |
juniper / junos | 21.2-r2-s1 | 21.2-r2-s1.x |
juniper / junos | 21.2-r2-s2 | 21.2-r2-s2.x |
juniper / junos | 21.2-r3 | 21.2-r3.x |
juniper / junos | 21.2-r3-s2 | 21.2-r3-s2.x |
juniper / junos | 21.2-r3-s1 | 21.2-r3-s1.x |
juniper / junos | 21.2-r3-s3 | 21.2-r3-s3.x |
juniper / junos | 21.2-r3-s4 | 21.2-r3-s4.x |
juniper / junos | 21.2-r3-s5 | 21.2-r3-s5.x |
juniper / junos | 21.3-r1 | 21.3-r1.x |
juniper / junos | 21.3-r2 | 21.3-r2.x |
juniper / junos | 21.3-r1-s1 | 21.3-r1-s1.x |
juniper / junos | 21.3-r1-s2 | 21.3-r1-s2.x |
juniper / junos | 21.3-r2-s1 | 21.3-r2-s1.x |
juniper / junos | 21.3-r2-s2 | 21.3-r2-s2.x |
juniper / junos | 21.3-r3 | 21.3-r3.x |
juniper / junos | 21.3-r3-s1 | 21.3-r3-s1.x |
juniper / junos | 21.3 | 21.3.x |
juniper / junos | 21.3-r3-s2 | 21.3-r3-s2.x |
juniper / junos | 21.4-r1-s1 | 21.4-r1-s1.x |
juniper / junos | 21.4-r1 | 21.4-r1.x |
juniper / junos | 21.4-r1-s2 | 21.4-r1-s2.x |
juniper / junos | 21.4-r2 | 21.4-r2.x |
juniper / junos | 21.4-r2-s1 | 21.4-r2-s1.x |
juniper / junos | 21.4 | 21.4.x |
juniper / junos | 21.4-r3 | 21.4-r3.x |
juniper / junos | 21.4-r2-s2 | 21.4-r2-s2.x |
juniper / junos | 21.4-r3-s1 | 21.4-r3-s1.x |
juniper / junos | 21.4-r3-s2 | 21.4-r3-s2.x |
juniper / junos | 21.4-r3-s3 | 21.4-r3-s3.x |
juniper / junos | 21.4-r3-s4 | 21.4-r3-s4.x |
juniper / junos | 22.1-r1 | 22.1-r1.x |
juniper / junos | 22.1-r1-s1 | 22.1-r1-s1.x |
juniper / junos | 22.1-r2 | 22.1-r2.x |
juniper / junos | 22.1-r1-s2 | 22.1-r1-s2.x |
juniper / junos | 22.1-r2-s1 | 22.1-r2-s1.x |
juniper / junos | 22.1 | 22.1.x |
juniper / junos | 22.2-r1 | 22.2-r1.x |
juniper / junos | 22.2-r1-s1 | 22.2-r1-s1.x |
juniper / junos | 22.2-r2 | 22.2-r2.x |
juniper / junos | 22.2-r1-s2 | 22.2-r1-s2.x |
juniper / junos | 22.2 | 22.2.x |