CVE-2021-0202

7.5 HIGH

📋 TL;DR

This vulnerability causes a memory leak in Juniper Networks MX Series and EX9200 Series platforms with Trio-based MPC when specific IRB and VPLS/bridge-domain configurations are present. The memory leak can lead to out-of-memory conditions and MPC restarts, causing temporary traffic interruptions. It affects specific Junos OS versions on these platforms.

💻 Affected Systems

Products:
  • Juniper Networks MX Series
  • Juniper Networks EX9200 Series
Versions: 17.3R3-S8; 17.4R3-S2; 18.2R3-S4, 18.2R3-S5; 18.3R3-S2, 18.3R3-S3; 18.4R3-S1 to 18.4R3-S6; 19.2R2 to 19.2R3-S1; 19.4R2 to 19.4R2-S3, 19.4R3; 20.2R1 to 20.2R1-S3, 20.2R2
Operating Systems: Junos OS
Default Config Vulnerable: ✅ No
Notes: Requires Trio-based MPC with IRB interface configured and mapped to VPLS instance or bridge-domain. Specific network events at CE devices trigger the memory leak.

📦 What is this software?

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

Junos by Juniper

Junos OS is Juniper Networks' flagship network operating system running on enterprise routers, switches, security appliances, and data center infrastructure worldwide. Deployed across telecommunications providers, ISPs, cloud service providers, financial institutions, and large enterprises, Junos po...

Learn more about Junos →

⚠️ Risk & Real-World Impact

🔴

Worst Case

Repeated MPC restarts causing sustained network outages and service disruption until the underlying issue is resolved.

🟠

Likely Case

Intermittent traffic interruptions due to MPC restarts triggered by memory exhaustion from the leak.

🟢

If Mitigated

Temporary traffic blips during MPC restarts, with monitoring allowing for quick detection and remediation.

🌐 Internet-Facing: MEDIUM - Affects edge routing platforms that could be internet-facing, but requires specific configuration and network events.
🏢 Internal Only: MEDIUM - Similar impact internally, but exploitation depends on network events at CE devices.

🎯 Exploit Status

Public PoC: ✅ No
Weaponized: UNKNOWN
Unauthenticated Exploit: ✅ No
Complexity: MEDIUM

Exploitation requires specific network conditions and configurations, making it less likely to be weaponized but still impactful when triggered.

🛠️ Fix & Mitigation

✅ Official Fix

Patch Version: Versions after those listed in affected versions; refer to Juniper advisory for specific fixed releases.

Vendor Advisory: https://kb.juniper.net/JSA11092

Restart Required: Yes

Instructions:

1. Check current Junos OS version. 2. Refer to Juniper advisory JSA11092 for fixed releases. 3. Upgrade to a fixed version. 4. Reboot affected devices after upgrade.

🔧 Temporary Workarounds

Monitor memory usage

all

Regularly check MPC memory usage to detect early signs of the leak and manually restart if needed.

show system resource-monitor fpc

🧯 If You Can't Patch

  • Avoid or reconfigure IRB interfaces mapped to VPLS instances or bridge-domains on affected platforms.
  • Implement network monitoring to detect MPC restarts and memory exhaustion events.

🔍 How to Verify

Check if Vulnerable:

Check Junos OS version and configuration for IRB interfaces mapped to VPLS/bridge-domain on Trio-based MPC.

Check Version:

show version

Verify Fix Applied:

Verify Junos OS version is updated to a fixed release and monitor for memory leak symptoms.

📡 Detection & Monitoring

Log Indicators:

  • MPC restart logs
  • Memory exhaustion warnings
  • Increased '% NH mem Free' depletion in resource monitor

Network Indicators:

  • Intermittent traffic drops
  • Increased latency during MPC restarts

SIEM Query:

Search for logs containing 'MPC restart', 'memory leak', or '% NH mem Free' below 20% on Juniper devices.

🔗 References

📤 Share & Export