CVE-2021-31365 is an Uncontrolled Resource Consumption vulnerability affecting Juniper Networks Junos OS on EX2300, EX3400, and EX4300 Series platforms. An adjacent attacker can send a stream of specific Layer 2 frames to cause an Aggregated Ethernet (AE) interface to go down, leading to a sustained Denial of Service (DoS) condition. This vulnerability has a CVSS score of 6.5 (Medium), indicating a low attack complexity with no user interaction required, but it only impacts availability. There is no known active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 18.3R3-S5CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 19.4, < 19.4R3-S5CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 20.2, < 20.2R3-S2CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 20.3, < 20.3R3-S1CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 21.1, < 21.1R2CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.