An Improper Validation of Syntactic Correctness of Input vulnerability in the Web-Filtering module of Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS).
If an SRX device configured for UTM Web-Filtering receives a specifically malformed SSL packet, this will cause an FPC crash and restart. This issue affects Junos OS on SRX Series:
Earlier versions of Junos are also affected, but no fix is available.
| Software | From | Fixed in |
|---|---|---|
| juniper / junos | 23.2-r2-s2 | 23.2-r2-s2.x |
| juniper / junos | 23.2-r2-s3 | 23.2-r2-s3.x |
| juniper / junos | 23.2-r2-s4 | 23.2-r2-s4.x |
| juniper / junos | 23.4-r2-s1 | 23.4-r2-s1.x |
| juniper / junos | 23.4-r2-s2 | 23.4-r2-s2.x |
| juniper / junos | 23.4-r2-s3 | 23.4-r2-s3.x |
| juniper / junos | 23.4-r2-s4 | 23.4-r2-s4.x |
| juniper / junos | 24.2 | 24.2.x |
| juniper / junos | 24.2-r1 | 24.2-r1.x |
| juniper / junos | 24.2-r1-s1 | 24.2-r1-s1.x |
| juniper / junos | 24.2-r1-s2 | 24.2-r1-s2.x |
| juniper / junos | 24.2-r2 | 24.2-r2.x |
| juniper / junos | 24.2-r2-s1 | 24.2-r2-s1.x |
| juniper / junos | 24.4 | 24.4.x |
| juniper / junos | 24.4-r1 | 24.4-r1.x |
| juniper / junos | 24.4-r1-s2 | 24.4-r1-s2.x |
| juniper / junos | 24.4-r2 | 24.4-r2.x |