Not a U.S. government website. NDD is an independent vulnerability database by Volerion and is not affiliated with or endorsed by NIST or NVD.
VOLERION
Volerion Security Research

NOT DEFERRED DATABASE

VULNERABILITIES

CVE-2023-36835 Details

Description

An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS on QFX10000 Series allows a network based attacker to cause a Denial of Service (DoS). If a specific valid IP packet is received and that packet needs to be routed over a VXLAN tunnel, this will result in a PFE wedge condition due to which traffic gets impacted. As this is not a crash and restart scenario, this condition will persist until the system is rebooted to recover. This issue affects Juniper Networks Junos OS on QFX10000: 20.3 version 20.3R1 and later versions; 20.4 versions prior to 20.4R3-S5; 21.1 versions prior to 21.1R3-S5; 21.2 versions prior to 21.2R3-S5; 21.3 versions prior to 21.3R3-S4; 21.4 versions prior to 21.4R3-S1; 22.1 versions prior to 22.1R3; 22.2 versions prior to 22.2R2; 22.3 versions prior to 22.3R1-S2, 22.3R2.

Metrics

References to Advisories, Solutions, and Tools

By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.

Weakness Enumeration

CWE-IDCWE NameSource
CWE-754Improper Check for Unusual or Exceptional Conditions[email protected]

Affected Products

ProductVersions
juniper junos
20.3 r1
20.3 r1-s1
20.3 r1-s2
20.3 r2
20.3 r2-s1

CPE

  • cpe:2.3:o:juniper:junos:20.3:r1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.3:r1-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.3:r1-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.3:r2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.3:r2-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.3:r3:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.3:r3-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.3:r3-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.3:r3-s3:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.3:r3-s4:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.3:r3-s5:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.3:r3-s6:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.4:-:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.4:r1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.4:r1-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.4:r2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.4:r2-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.4:r2-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.4:r3:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.4:r3-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.4:r3-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.4:r3-s3:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:20.4:r3-s4:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.1:-:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.1:r1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.1:r1-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.1:r2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.1:r2-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.1:r2-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.1:r3:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.1:r3-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.1:r3-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.1:r3-s3:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.1:r3-s4:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.2:-:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.2:r1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.2:r1-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.2:r1-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.2:r2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.2:r2-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.2:r2-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.2:r3:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.2:r3-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.2:r3-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.2:r3-s3:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.2:r3-s4:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.3:-:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.3:r1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.3:r1-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.3:r1-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.3:r2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.3:r2-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.3:r2-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.3:r3:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.3:r3-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.3:r3-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.3:r3-s3:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.4:-:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.4:r1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.4:r1-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.4:r1-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.4:r2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.4:r2-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.4:r2-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:21.4:r3:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:22.1:r1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:22.1:r1-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:22.1:r1-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:22.1:r2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:22.1:r2-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:22.1:r2-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:22.2:r1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:22.2:r1-s1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:22.2:r1-s2:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:22.3:r1:*:*:*:*:*:*
  • cpe:2.3:o:juniper:junos:22.3:r1-s1:*:*:*:*:*:*

Remediation

  • No remediation found in references.
juniper qfx10002
All versions

CPE

  • cpe:2.3:h:juniper:qfx10002:-:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
juniper qfx10002-60c
All versions

CPE

  • cpe:2.3:h:juniper:qfx10002-60c:-:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
juniper qfx10008
All versions

CPE

  • cpe:2.3:h:juniper:qfx10008:-:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.
juniper qfx10016
All versions

CPE

  • cpe:2.3:h:juniper:qfx10016:-:*:*:*:*:*:*:*

Remediation

  • No remediation found in references.

Change History

5 change records found show changes


QUICK INFO

CVE Dictionary Entry:
CVE-2023-36835
NVD Published Date:
Jul 14, 2023
NVD Last Modified:
Jun 17, 2026
Source:
[email protected]
CVE-2023-36835 Details - Not Deferred