CVE-2022-22192 is an Improper Validation of Syntactic Correctness of Input vulnerability in Juniper Networks Junos OS Evolved on PTX10004, PTX10008, and PTX10016 series devices. A network-based, unauthenticated attacker can trigger a Denial of Service (DoS) by sending malformed TCP packets to specific ports (BGP, LDP, MSDP), leading to a kernel panic. This vulnerability has a CVSS score of 7.5 (HIGH), indicating a severe impact with a network attack vector and low attack complexity, requiring no user interaction. The potential impact is a complete loss of availability for affected devices. Currently, there is no evidence of active exploitation, nor are there any public exploit codes available in Metasploit, Nuclei, or ExploitDB. Community discussion and media coverage for this CVE are minimal, suggesting low public awareness or attention.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
20.4CPE matchmatch criteria | cpe:2.3:o:juniper:junos_os_evolved:20.4:r1:*:*:*:*:*:* | ||
20.4CPE matchmatch criteria | cpe:2.3:o:juniper:junos_os_evolved:20.4:r1-s1:*:*:*:*:*:* | ||
20.4CPE matchmatch criteria | cpe:2.3:o:juniper:junos_os_evolved:20.4:r1-s2:*:*:*:*:*:* | ||
20.4CPE matchmatch criteria | cpe:2.3:o:juniper:junos_os_evolved:20.4:r2:*:*:*:*:*:* | ||
20.4CPE matchmatch criteria | cpe:2.3:o:juniper:junos_os_evolved:20.4:r2-s1:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.4 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.