An Improper Release of Memory Before Removing Last Reference vulnerability in the Session Initiation Protocol (SIP) Application Layer Gateway (ALG) of Juniper Networks Junos OS allows unauthenticated network-based attacker to cause a partial Denial of Service (DoS). On all MX and SRX platforms, if the SIP ALG is enabled, receipt of a specific SIP packet will create a stale SIP entry. Sustained receipt of such packets will cause the SIP call table to eventually fill up and cause a DoS for all SIP traffic. The SIP call usage can be monitored by "show security alg sip calls". To be affected the SIP ALG needs to be enabled, either implicitly / by default or by way of configuration. Please verify on SRX with: user@host> show security alg status | match sip SIP : Enabled Please verify on MX whether the following is configured: [ services ... rule <rule-name> (term <term-name>) from/match application/application-set <name> ] where either a. name = junos-sip or an application or application-set refers to SIP: b. [ applications application <name> application-protocol sip ] or c. [ applications application-set <name> application junos-sip ] This issue affects Juniper Networks Junos OS on SRX Series and MX Series: 20.4 versions prior to 20.4R3-S2; 21.1 versions prior to 21.1R3-S2; 21.2 versions prior to 21.2R2-S2; 21.2 versions prior to 21.2R3; 21.3 versions prior to 21.3R2; 21.4 versions prior to 21.4R2. This issue does not affect Juniper Networks Junos OS versions prior to 20.4R1. Juniper SIRT is not aware of any malicious exploitation of this vulnerability.
References
| Link | Resource |
|---|---|
| https://kb.juniper.net/JSA69708 | Vendor Advisory |
| https://kb.juniper.net/JSA69708 | Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2022-07-20 15:15
Updated : 2024-11-21 06:46
NVD link : CVE-2022-22204
Mitre link : CVE-2022-22204
CVE.ORG link : CVE-2022-22204
JSON object : View
Products Affected
juniper
- mx40
- srx5800
- srx4000
- srx240h2
- mx104
- srx100
- srx240
- mx240
- mx150
- mx480
- srx340
- mx10
- mx5
- srx220
- srx4200
- srx1400
- srx550_hm
- srx300
- srx110
- mx960
- srx4600
- mx2020
- srx210
- mx2010
- srx5400
- srx5000
- mx10008
- srx345
- srx550
- srx550m
- mx10000
- srx3600
- srx5600
- srx380
- mx10003
- junos
- mx2008
- srx1500
- mx204
- srx4100
- srx650
- mx10016
- srx320
- mx80
- srx3400
CWE
CWE-401
Missing Release of Memory after Effective Lifetime
