An Improper Validation of Syntactic Correctness of Input vulnerability in Intrusion Detection and Prevention (IDP) of Juniper Networks SRX Series and MX Series allows an unauthenticated, network-based attacker to cause Denial of Service (DoS). Continued receipt of this specific packet will cause a sustained Denial of Service condition. On all SRX Series and MX Series platforms, where IDP is enabled and a specific malformed SSL packet is received, the SSL detector crashes leading to an FPC core. This issue affects Juniper Networks SRX Series and MX Series prior to SigPack 3598. In order to identify the current SigPack version, following command can be used: user@junos# show security idp security-package-version
References
Link Resource
https://supportportal.juniper.net/JSA71662 Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: juniper

Published: 2023-07-14T16:34:24.993Z

Updated: 2023-07-14T16:34:24.993Z

Reserved: 2023-03-29T08:44:10.679Z


Link: CVE-2023-28985

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-07-14T17:15:09.050

Modified: 2023-07-27T13:02:50.803


Link: CVE-2023-28985

JSON object: View

cve-icon Redhat Information

No data.

CWE