A Missing Release of Memory after Effective Lifetime vulnerability in the Layer-2 control protocols daemon (l2cpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated adjacent attacker to cause a memory leak. Continued exploitation can lead to memory exhaustion and thereby a Denial of Service (DoS).
This issue occurs when specific LLDP packets are received. The impact of the l2cpd cores is that if any of the stp protocols (rstp, mstp or vstp) is used then stp re-converges and traffic loss will occur during that time. Also if any services depend on LLDP state (like PoE or VoIP device recognition) then these will also be affected.
The memory utilization of the L2CPd process can be monitored with the following command:
user@host> show system processes extensive | match l2cpd
1234 root 52 0 521M 43412K RUN 1 4:02 34.47% l2cpd
This issue affects Juniper Networks Junos OS:
Juniper Networks Junos OS Evolved
This issue does not affect Juniper Networks Junos OS 19.1 version 19.1R1 and later versions.
This vulnerability is only exploitable on interfaces with LLDP enabled.
[ protocols lldp ] Juniper SIRT is not aware of any malicious exploitation of this vulnerability.
[ protocols lldp ]
This issue was seen during production usage.
This issue has been assigned CVE-2022-22172 .
SOLUTION:
The following software releases have been updated to resolve this specific issue:
for Junos OS: 19.2R1-S8, 19.2R3-S4, 19.3R3-S5, 19.4R3-S7, 20.1R3-S3, 20.2R3-S2, 20.3R3-S1, 20.4R3, 21.1R2-S2, 21.1R3, 21.2R2, 21.3R1, and all subsequent releases.
for Junos OS Evolved: 20.4R3-S2-EVO, 21.2R2-EVO, 21.3R1-EVO, and all subsequent releases.
This issue is being tracked as 1602588 .
Software releases or updates are available for download at https://support.juniper.net/support/downloads/
2022-01-12: Initial Publication.