Metrics
No CVSS v4.0
Attack Vector Adjacent Network
Attack Complexity Low
Privileges Required None
Scope Unchanged
Confidentiality Impact None
Integrity Impact None
Availability Impact High
User Interaction None
No CVSS v3.0
No CVSS v2
This CVE is not in the KEV list.
The EPSS score is 0.00113.
Key SSVC decision points have not yet been added.
Affected Vendors & Products
Vendors | Products |
---|---|
Juniper |
|
Configuration 1 [-]
AND |
|
No data.
No data.
Solution
The following software releases have been updated to resolve this specific issue: Junos OS 19.1R3-S9, 19.2R3-S6, 19.3R3-S6, 19.4R3-S8, 20.1R3-S4, 20.2R3-S5, 20.3R3-S4, 20.4R3-S4, 21.1R3-S2, 21.2R3-S1, 21.3R3, 21.4R2, 22.1R2, 22.2R1, and all subsequent releases.
Workaround
The FPC crash only occurs if specific MPLS packets are received on an interface with multiple units configured and at least one unit has family mpls not configured. Also, the first unit with family mpls configured is not the lowest numerical unit on that interface. A viable config-based workaround would be to reorder the unit numbers on core-facing interfaces to ensure the numerically lowest unit has 'family mpls' configured.
Link | Providers |
---|---|
https://kb.juniper.net/JSA69706 |
![]() ![]() |
No history.

Status: PUBLISHED
Assigner: juniper
Published:
Updated: 2024-09-17T01:36:56.175Z
Reserved: 2021-12-21T00:00:00
Link: CVE-2022-22202

No data.

Status : Modified
Published: 2022-07-20T15:15:08.157
Modified: 2024-11-21T06:46:22.810
Link: CVE-2022-22202

No data.

No data.