CVE-2024-39535
An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (PFE) of Juniper Networks Junos OS Evolved on ACX 7000 Series allows an unauthenticated, adjacent attacker to cause a Denial-of-Service (DoS). When a device has a Layer 3 or an IRB interface configured in a VPLS instance and specific traffic is received, the evo-pfemand processes crashes which causes a service outage for the respective FPC until the system is recovered manually. This issue only affects Junos OS Evolved 22.4R2-S1 and 22.4R2-S2 releases and is fixed in 22.4R3. No other releases are affected.
Published:Jul 11, 2024
Last Modified:Jan 22, 2026
EPS:Jul 11, 2024
EPSS Score:0.00057
CVSS Score:6.5
Affected Products
Vendor
Product
Action
Vendor
Juniper
Product
Acx7020
Juniper
Acx7020
Vendor
Juniper
Product
Acx7024
Juniper
Acx7024
Vendor
Juniper
Product
Acx7024x
Juniper
Acx7024x
Vendor
Juniper
Product
Acx7100
Juniper
Acx7100
Vendor
Juniper
Product
Acx7300
Juniper
Acx7300
Vendor
Juniper
Product
Acx7509
Juniper
Acx7509
Vendor
Juniper
Product
Junos Os Evolved
Juniper
Junos Os Evolved
Vendor
Juniper Networks
Product
Junos Os Evolved
Juniper Networks
Junos Os Evolved
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
