CVE-2024-47501
A NULL Pointer Dereference vulnerability in the packet forwarding engine (pfe) of Juniper Networks Junos OS on MX304, MX with MPC10/11/LC9600, and EX9200 with EX9200-15C allows a locally authenticated attacker with low privileges to cause a Denial of Service (DoS). In a VPLS or Junos Fusion scenario, the execution of specific show commands will cause all FPCs hosting VPLS sessions or connecting to satellites to crash and restart. This issue affects Junos on MX304, MX with MPC10/11/LC9600 and EX9200 with EX9200-15C: * All version before 21.2R3-S1, * 21.3 versions before 21.3R3, * 21.4 versions before 21.4R2.
Published:Oct 11, 2024
Last Modified:Jan 26, 2026
EPS:Oct 11, 2024
EPSS Score:0.00054
CVSS Score:5.5
Affected Products
Vendor
Product
Action
Vendor
Juniper
Product
Ex9200
Juniper
Ex9200
Vendor
Juniper
Product
Ex9200-15c
Juniper
Ex9200-15c
Vendor
Juniper
Product
Junos
Juniper
Junos
Vendor
Juniper
Product
Mpc10e-10c
Juniper
Mpc10e-10c
Vendor
Juniper
Product
Mpc10e-15c
Juniper
Mpc10e-15c
Vendor
Juniper
Product
Mpc11
Juniper
Mpc11
Vendor
Juniper
Product
Mx10003
Juniper
Mx10003
Vendor
Juniper
Product
Mx10004
Juniper
Mx10004
Vendor
Juniper
Product
Mx10008
Juniper
Mx10008
Vendor
Juniper
Product
Mx10016
Juniper
Mx10016
Vendor
Juniper
Product
Mx2008
Juniper
Mx2008
Vendor
Juniper
Product
Mx2010
Juniper
Mx2010
Vendor
Juniper
Product
Mx240
Juniper
Mx240
Vendor
Juniper
Product
Mx304
Juniper
Mx304
Vendor
Juniper
Product
Mx480
Juniper
Mx480
Vendor
Juniper
Product
Mx960
Juniper
Mx960
Vendor
Juniper Networks
Product
Junos Os
Juniper Networks
Junos Os
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
No CAPEC recorded yet
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
