Juniper Security Updates – 22 June 2023

Juniper has released security updates to fix a vulnerability across Junos OS and Junos OS Evolved.

The addressed vulnerability could allow the remote attacker to cause a denial of service attack on the affected products by sending a BGP update containing a specific, optional transitive attribute.

Juniper Networks Junos OS and Junos OS Evolved Denial of Service Vulnerability (CVE-2023-0026):

  • CVSS: 7.5
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: None
  • Consequences: Denial of Service

The Affected Products:

  • Junos OS versions selected versions.
  • Junos OS Evolved selected versions.
Vulnerabilities

CVE-2023-0026

Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Juniper Security Advisory

References