CVE-2024-47508 is an Allocation of Resources Without Limits or Throttling vulnerability in Juniper Networks Junos OS Evolved, specifically affecting the PFE management daemon (evo-pfemand). An authenticated, network-based attacker can trigger a GUID resource leak through specific SNMP GET operations or low-privileged CLI commands, leading to FPC crashes and a Denial of Service (DoS). This vulnerability has a CVSS score of 6.5 (Medium) and impacts the availability of affected systems, requiring manual FPC restarts for recovery. There is currently no evidence of active exploitation, public exploit code, or significant community discussion surrounding this CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
< 21.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos_os_evolved:*:*:*:*:*:*:*:* | ||
21.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos_os_evolved:21.2:-:*:*:*:*:*:* | ||
21.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos_os_evolved:21.2:r1:*:*:*:*:*:* | ||
21.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos_os_evolved:21.2:r1-s1:*:*:*:*:*:* | ||
21.2CPE matchmatch criteria | cpe:2.3:o:juniper:junos_os_evolved:21.2:r1-s2:*:*:*:*:*:* |
CVSS version used by this source: 4.0
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:L/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:X/V:X/RE:M/U:X
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.