A Heap-based Buffer Overflow vulnerability in the...
Moderate severity
Unreviewed
Published
Jan 12, 2024
to the GitHub Advisory Database
•
Updated Jan 27, 2024
Description
Published by the National Vulnerability Database
Jan 12, 2024
Published to the GitHub Advisory Database
Jan 12, 2024
Last updated
Jan 27, 2024
A Heap-based Buffer Overflow vulnerability in the Network Services Daemon (NSD) of Juniper Networks Junos OS allows authenticated, low privileged, local attacker to cause a Denial of Service (DoS).
On an SRX 5000 Series device, when executing a specific command repeatedly, memory is corrupted, which leads to a Flow Processing Daemon (flowd) crash.
The NSD process has to be restarted to restore services.
If this issue occurs, it can be checked with the following command:
user@host> request security policies check
The following log message can also be observed:
Error: policies are out of sync for PFE node.fpc.pic.
This issue affects:
Juniper Networks Junos OS on SRX 5000 Series
References