Multiple vulnerabilities have been resolved in the Junos Space 21.3R1 release by updating third party software included with Junos Space or by fixing vulnerabilities found during external security research.
These issues affect Juniper Networks Junos Space versions prior to 21.3R1.
Juniper SIRT is not aware of any malicious exploitation of these vulnerabilities.
These issues were discovered during external security research.
Important security issues resolved include:
The following software releases have been updated to resolve these specific issues: Junos Space 21.3R1, and all subsequent releases.
These issues are being tracked as 1577136 , 1584221 , 1584226 , 1614537 , 1614541 , 1614544 , 1619150 , 1627642 and 1637360 .
Software releases or updates are available for download at https://support.juniper.net/support/downloads/ .
There are no known workarounds for these issues other than those already posted for log4j in JSA11259 [juniper.net] .
To reduce the risk of exploitation of these issues, use access lists or firewall filters to limit access to the device to only trusted administrative networks, hosts and users.
2022-01-12: Initial Publication.