A Missing Release of Memory after Effective Lifetime vulnerability in the kernel of Juniper Networks Junos OS allows an unauthenticated, adjacent attacker to cause a Denial of Service (DoS).
In an MPLS scenario specific packets destined to an Integrated Routing and Bridging (irb) interface of the device will cause a buffer (mbuf) to leak. Continued receipt of these specific packets will eventually cause a loss of connectivity to and from the device, and requires a reboot to recover.
These mbufs can be monitored by using the CLI command 'show system buffers':
user@host> show system buffers
783/1497/2280 mbufs in use (current/cache/total)
793/1487/2280 mbufs in use (current/cache/total) <<<<<< mbuf usage increased
This issue affects Juniper Networks Junos OS:
To be exposed to this vulnerability a minimal IRB configuration like in the following example needs to be present:
[interfaces irb unit <unit> family inet address <IP-adress>]
Juniper SIRT is not aware of any malicious exploitation of this vulnerability.
This issue was seen during production usage.
This issue has been assigned CVE-2023-22395.
The following software releases have been updated to resolve this specific issue: 19.3R3-S7, 19.4R3-S9, 20.2R3-S5, 20.3R3-S5, 20.4R3-S4, 21.1R3-S3, 21.2R3-S2, 21.3R3-S1, 21.4R3, 22.1R2, 22.2R1, and all subsequent releases.
This issue is being tracked as 1666181.
Note: Juniper SIRT's policy is not to evaluate releases which are beyond End of Engineering (EOE) or End of Life (EOL).
2023-01-11: Initial Publication