An Improper Encoding or Escaping of Output vulnerability in the Sampling Route Record Daemon (SRRD) of Juniper Networks Junos OS allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS).
When a device configured for flow-monitoring receives a specific BGP update message, it is correctly processed internally by the routing protocol daemon (rpd), but when it's sent to SRRD it's encoded incorrectly which leads to a crash and momentary interruption of jflow processing until it automatically restarts. This issue does not affect traffic forwarding itself. This issue affects Junos OS:
This issue does not affected Junos OS Evolved.
| Software | From | Fixed in |
|---|---|---|
| juniper / junos | - | 21.2 |
| juniper / junos | 21.2 | 21.2.x |
| juniper / junos | 21.2-r1 | 21.2-r1.x |
| juniper / junos | 21.2-r1-s1 | 21.2-r1-s1.x |
| juniper / junos | 21.2-r1-s2 | 21.2-r1-s2.x |
| juniper / junos | 21.2-r2 | 21.2-r2.x |
| juniper / junos | 21.2-r2-s1 | 21.2-r2-s1.x |
| juniper / junos | 21.2-r2-s2 | 21.2-r2-s2.x |
| juniper / junos | 21.2-r3 | 21.2-r3.x |
| juniper / junos | 21.2-r3-s1 | 21.2-r3-s1.x |
| juniper / junos | 21.2-r3-s2 | 21.2-r3-s2.x |
| juniper / junos | 21.2-r3-s3 | 21.2-r3-s3.x |
| juniper / junos | 21.2-r3-s4 | 21.2-r3-s4.x |
| juniper / junos | 21.2-r3-s5 | 21.2-r3-s5.x |
| juniper / junos | 21.2-r3-s6 | 21.2-r3-s6.x |
| juniper / junos | 21.2-r3-s7 | 21.2-r3-s7.x |
| juniper / junos | 21.2-r3-s8 | 21.2-r3-s8.x |
| juniper / junos | 21.4 | 21.4.x |
| juniper / junos | 21.4-r1 | 21.4-r1.x |
| juniper / junos | 21.4-r1-s1 | 21.4-r1-s1.x |
| juniper / junos | 21.4-r1-s2 | 21.4-r1-s2.x |
| juniper / junos | 21.4-r2 | 21.4-r2.x |
| juniper / junos | 21.4-r2-s1 | 21.4-r2-s1.x |
| juniper / junos | 21.4-r2-s2 | 21.4-r2-s2.x |
| juniper / junos | 21.4-r3 | 21.4-r3.x |
| juniper / junos | 21.4-r3-s1 | 21.4-r3-s1.x |
| juniper / junos | 21.4-r3-s2 | 21.4-r3-s2.x |
| juniper / junos | 21.4-r3-s3 | 21.4-r3-s3.x |
| juniper / junos | 21.4-r3-s4 | 21.4-r3-s4.x |
| juniper / junos | 21.4-r3-s5 | 21.4-r3-s5.x |
| juniper / junos | 21.4-r3-s6 | 21.4-r3-s6.x |
| juniper / junos | 21.4-r3-s7 | 21.4-r3-s7.x |
| juniper / junos | 21.4-r3-s8 | 21.4-r3-s8.x |
| juniper / junos | 21.4-r3-s9 | 21.4-r3-s9.x |
| juniper / junos | 22.2 | 22.2.x |
| juniper / junos | 22.2-r1 | 22.2-r1.x |
| juniper / junos | 22.2-r1-s1 | 22.2-r1-s1.x |
| juniper / junos | 22.2-r1-s2 | 22.2-r1-s2.x |
| juniper / junos | 22.2-r2 | 22.2-r2.x |
| juniper / junos | 22.2-r2-s1 | 22.2-r2-s1.x |
| juniper / junos | 22.2-r2-s2 | 22.2-r2-s2.x |
| juniper / junos | 22.2-r3 | 22.2-r3.x |
| juniper / junos | 22.2-r3-s1 | 22.2-r3-s1.x |
| juniper / junos | 22.2-r3-s2 | 22.2-r3-s2.x |
| juniper / junos | 22.2-r3-s3 | 22.2-r3-s3.x |
| juniper / junos | 22.2-r3-s4 | 22.2-r3-s4.x |
| juniper / junos | 22.2-r3-s5 | 22.2-r3-s5.x |
| juniper / junos | 22.4 | 22.4.x |
| juniper / junos | 22.4-r1 | 22.4-r1.x |
| juniper / junos | 22.4-r1-s1 | 22.4-r1-s1.x |
| juniper / junos | 22.4-r1-s2 | 22.4-r1-s2.x |
| juniper / junos | 22.4-r2 | 22.4-r2.x |
| juniper / junos | 22.4-r2-s1 | 22.4-r2-s1.x |
| juniper / junos | 22.4-r2-s2 | 22.4-r2-s2.x |
| juniper / junos | 23.2 | 23.2.x |
| juniper / junos | 23.2-r1 | 23.2-r1.x |
| juniper / junos | 23.2-r1-s1 | 23.2-r1-s1.x |
| juniper / junos | 23.2-r2 | 23.2-r2.x |