CVE-2022-22206

HIGH

Juniper Networks Junos OS <20.2R3-S4 - Buffer Overflow

Title source: llm
STIX 2.1

Description

A Buffer Overflow vulnerability in the PFE of Juniper Networks Junos OS on SRX series allows an unauthenticated network based attacker to cause a Denial of Service (DoS). The PFE will crash when specific traffic is scanned by Enhanced Web Filtering safe-search feature of UTM (Unified Threat management). Continued receipt of this specific traffic will create a sustained Denial of Service (DoS) condition. This issue affects Juniper Networks Junos OS: 20.2 versions prior to 20.2R3-S4 on SRX Series; 20.3 versions prior to 20.3R3-S3 on SRX Series; 20.4 versions prior to 20.4R3-S3 on SRX Series; 21.1 versions prior to 21.1R3-S1 on SRX Series; 21.2 versions prior to 21.2R2-S2, 21.2R3 on SRX Series; 21.3 versions prior to 21.3R2 on SRX Series; 21.4 versions prior to 21.4R2 on SRX Series. This issue does not affect Juniper Networks Junos OS versions prior to 20.2R1.

References (1)

Core 1
Core References
Mailing List, Mitigation, Vendor Advisory x_refsource_confirm
https://kb.juniper.net/JSA69710

Scores

CVSS v3 7.5
EPSS 0.0061
EPSS Percentile 69.8%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Details

CWE
CWE-120
Status published
Products (7)
juniper/junos 20.2 r1 (12 CPE variants)
juniper/junos 20.3 (9 CPE variants)
juniper/junos 20.4 (9 CPE variants)
juniper/junos 21.1 (7 CPE variants)
juniper/junos 21.2 (6 CPE variants)
juniper/junos 21.3 r1 (3 CPE variants)
juniper/junos 21.4 r1 (3 CPE variants)
Published Jul 20, 2022
Tracked Since Feb 18, 2026