CVE-2024-21603 is an Improper Check for Unusual or Exceptional Conditions vulnerability in Juniper Junos OS on specific MX Series devices (MPC10, MPC11, LC9600, MX304). A low-privileged network attacker can trigger a denial of service by gathering SCU/DCU statistics with a scaled configuration, causing a device restart. With a CVSS score of 6.5 (Medium), this vulnerability requires low privileges and network access, leading to high availability impact. There is currently no evidence of active exploitation, public exploit code, or significant community discussion.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 0, < 20.4R3-S9CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 21.2, < 21.2R3-S6CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 21.3, < 21.3R3-S5CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 21.4, < 21.4R3CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* | ||
>= 22.1, < 22.1R3CPE match | cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.