A Deadlock vulnerability in the packet forwarding engine (PFE) of Juniper Networks Junos OS on SRX Series allows an unauthenticated, network-based attacker to cause a Denial of Service (DoS).
When a large amount of traffic is processed by ATP Cloud inspection, a deadlock can occur which will result in a PFE crash and restart. Whether the crash occurs, depends on system internal timing that is outside the attackers control.
This issue affects Junos OS on SRX Series:
The product contains multiple threads or executable segments that are waiting for each other to release a necessary lock, resulting in deadlock.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Junos | Juniper | * | 21.3 (excluding) |
| Junos | Juniper | 21.3 (including) | 21.3 (including) |
| Junos | Juniper | 21.3-r1 (including) | 21.3-r1 (including) |
| Junos | Juniper | 21.3-r1-s1 (including) | 21.3-r1-s1 (including) |
| Junos | Juniper | 21.3-r1-s2 (including) | 21.3-r1-s2 (including) |
| Junos | Juniper | 21.3-r2 (including) | 21.3-r2 (including) |
| Junos | Juniper | 21.3-r2-s1 (including) | 21.3-r2-s1 (including) |
| Junos | Juniper | 21.3-r2-s2 (including) | 21.3-r2-s2 (including) |
| Junos | Juniper | 21.3-r3 (including) | 21.3-r3 (including) |
| Junos | Juniper | 21.4 (including) | 21.4 (including) |
| Junos | Juniper | 21.4-r1 (including) | 21.4-r1 (including) |
| Junos | Juniper | 21.4-r1-s1 (including) | 21.4-r1-s1 (including) |
| Junos | Juniper | 21.4-r1-s2 (including) | 21.4-r1-s2 (including) |
| Junos | Juniper | 21.4-r2 (including) | 21.4-r2 (including) |
| Junos | Juniper | 21.4-r2-s1 (including) | 21.4-r2-s1 (including) |
| Junos | Juniper | 21.4-r2-s2 (including) | 21.4-r2-s2 (including) |
| Junos | Juniper | 22.1 (including) | 22.1 (including) |
| Junos | Juniper | 22.1-r1 (including) | 22.1-r1 (including) |
| Junos | Juniper | 22.1-r1-s1 (including) | 22.1-r1-s1 (including) |
| Junos | Juniper | 22.1-r1-s2 (including) | 22.1-r1-s2 (including) |
| Junos | Juniper | 22.2 (including) | 22.2 (including) |
| Junos | Juniper | 22.2-r1 (including) | 22.2-r1 (including) |
| Junos | Juniper | 22.2-r1-s1 (including) | 22.2-r1-s1 (including) |
| Junos | Juniper | 22.2-r2 (including) | 22.2-r2 (including) |