An Improper Handling of Exceptional Conditions vulnerability in packet processing of Juniper Networks Junos OS on MX Series allows an unauthenticated network-based attacker to send specific packets to an Aggregated Multiservices (AMS) interface on the device, causing the packet forwarding engine (PFE) to crash, resulting in a Denial of Service (DoS).  Continued receipt and processing of this packet will create a sustained Denial of Service (DoS) condition.
This issue is only triggered by packets destined to a local-interface via a service-interface (AMS).  AMS is only supported on the MS-MPC, MS-MIC, and MX-SPC3 cards.  This issue is not experienced on other types of interfaces or configurations.  Additionally, transit traffic does not trigger this issue.
This issue affects Juniper Networks Junos OS on MX Series:
All versions prior to 19.1R3-S10;
19.2 versions prior to 19.2R3-S7;
19.3 versions prior to 19.3R3-S8;
19.4 versions prior to 19.4R3-S12;
20.2 versions prior to 20.2R3-S8;
20.4 versions prior to 20.4R3-S7;
21.1 versions prior to 21.1R3-S5;
21.2 versions prior to 21.2R3-S5;
21.3 versions prior to 21.3R3-S4;
21.4 versions prior to 21.4R3-S3;
22.1 versions prior to 22.1R3-S2;
22.2 versions prior to 22.2R3;
22.3 versions prior to 22.3R2-S1, 22.3R3;
22.4 versions prior to 22.4R1-S2, 22.4R2.
                
            Metrics
No CVSS v4.0
Attack Vector Network
Attack Complexity Low
Privileges Required None
Scope Unchanged
Confidentiality Impact None
Integrity Impact None
Availability Impact High
User Interaction None
No CVSS v3.0
No CVSS v2
This CVE is not in the KEV list.
Exploitation none
Automatable yes
Technical Impact partial
Affected Vendors & Products
| Vendors | Products | 
|---|---|
| Juniper | 
 | 
| Juniper Networks | 
 | 
Configuration 1 [-]
| AND | 
 
 | 
No data.
References
        | Link | Providers | 
|---|---|
| https://supportportal.juniper.net/JSA71639 |     | 
History
                    Thu, 07 Nov 2024 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | Juniper Networks Juniper Networks junos Os | |
| CPEs | cpe:2.3:o:juniper_networks:junos_os:*:*:*:*:*:*:*:* | |
| Vendors & Products | Juniper Networks Juniper Networks junos Os | |
| Metrics | ssvc 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: juniper
Published: 2023-07-14T15:56:44.005Z
Updated: 2024-11-07T14:37:52.265Z
Reserved: 2023-06-27T16:17:25.275Z
Link: CVE-2023-36832
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-02T17:01:09.608Z
 NVD
                        NVD
                    Status : Modified
Published: 2023-07-14T16:15:14.237
Modified: 2024-11-21T08:10:41.923
Link: CVE-2023-36832
 Redhat
                        Redhat
                    No data.