An Incorrect Authorization vulnerability in TCP packet processing of Juniper Networks Junos OS Evolved allows an unauthenticated, network based attacker to bypass intended access restrictions.
Although a control plane firewall filter is configured correctly, specific TCP packets addressed to the router can bypass it.
This issue affects Juniper Networks Junos OS Evolved:
All versions prior to 20.4R3-S4-EVO;
21.1-EVO version 21.1R1 and later versions;
21.2-EVO version 21.2R1 and later versions;
21.3-EVO versions prior to 21.3R3-S2-EVO;
21.4-EVO versions prior to 21.4R2-S1-EVO, 21.4R3-EVO;
22.1-EVO versions prior to 22.1R3-EVO.
Juniper SIRT is not aware of any malicious exploitation of this vulnerability.
This issue was found during internal product security testing or research.
This issue has been assigned CVE-2023-44202.
The following software releases have been updated to resolve this specific issue: Junos OS Evolved 20.4R3-S4-EVO, 21.3R3-S2-EVO, 21.4R2-S1-EVO, 21.4R3-EVO, 22.1R3-EVO, 22.2R1-EVO, and all subsequent releases.
This issue is being tracked as PR 1663550 which is visible on the Customer Support website.
Note: Juniper SIRT's policy [juniper.net] is not to evaluate releases which are beyond End of Engineering (EOE) or End of Life (EOL).
There are no known workarounds for this issue.
2023-10-11: Initial Publication