CVE-2024-47509
CVSS 3.1 Score 6.5 of 10 (medium)
Details
Summary
CVE-2024-47509 is a resource exhaustion vulnerability impacting the PFE management daemon (evo-pfemand) in Juniper Networks Junos OS Evolved. Authenticated attackers can cause a Denial of Service (DoS) by executing specific SNMP GET operations or low-privileged CLI commands, resulting in Guid exhaustion. This condition leads to FPC crashes and the need for manual restarts. The leak can be monitored with the 'show platform application-info allocations' command, and constant increases in Guid values indicate the leak is occurring. Affected versions include all before 21.4R2-EVO and 22.1 versions before 22.1R2-EVO. This issue is related to, but distinct from, CVE-2024-47505 and CVE-2024-47508.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.