CVE-2022-22160
An Unchecked Error Condition vulnerability in the subscriber management daemon (smgd) of Juniper Networks Junos OS allows an unauthenticated adjacent attacker to cause a crash of and thereby a Denial of Service (DoS). In a subscriber management / broadband edge environment if a single session group configuration contains dual-stack and a pp0 interface, smgd will crash and restart every time a PPPoE client sends a specific message. This issue affects Juniper Networks Junos OS on MX Series: 16.1 version 16.1R1 and later versions prior to 18.4R3-S10; 19.1 versions prior to 19.1R2-S3, 19.1R3-S7; 19.2 versions prior to 19.2R1-S8, 19.2R3-S4; 19.3 versions prior to 19.3R3-S4; 19.4 versions prior to 19.4R3-S5; 20.1 versions prior to 20.1R3-S3; 20.2 versions prior to 20.2R3-S3; 20.3 versions prior to 20.3R3-S2; 20.4 versions prior to 20.4R3; 21.1 versions prior to 21.1R3; 21.2 versions prior to 21.2R2. This issue does not affect Juniper Networks Junos OS versions prior to 16.1R1.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 6.5
- CVSS vector
- CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS probability
- 0.08%
- CWE
- CWE-391
- Published
- 2022-01-19
- Last modified
- 2026-03-13
Affected products
- Juniper Networks Junos OS
- Juniper Networks Junos OS
- Juniper Networks Junos OS
- Juniper Networks Junos OS
- Juniper Networks Junos OS
- Juniper Networks Junos OS
- Juniper Networks Junos OS
- Juniper Networks Junos OS
Weakness type
Related vulnerabilities
- CVE-2026-74900 — openssl_encrypt before 1.4.0 Weak Shared Secret via PQC Simulation Mode
- CVE-2025-71325 — picklescan - Detection Bypass via STACK_GLOBAL Opcode Parsing Logic Flaw
- CVE-2024-52316 — Apache Tomcat: Authentication bypass when using Jakarta Authentication API
- CVE-2022-20849 — Cisco IOS XR Software Broadband Network Gateway PPPoE Denial of Service Vulnerability
- CVE-2024-23326 — Envoy incorrectly accepts HTTP 200 response for entering upgrade mode
- CVE-2023-32871 — In DA, there is a possible permission bypass due to an incorrect status check. This could lead to...
- CVE-2023-0572 — Unchecked Error Condition in froxlor/froxlor
- CVE-2020-14383 — A flaw was found in samba's DNS server. An authenticated user could use this flaw to the RPC server...