CVE-2025-52958 – Juniper Networks Junos OS and Junos OS Evolved Reachable Assertion BGP Denial of Service
A Reachable Assertion vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS).On all Junos OS and Junos OS Evolved devices, when route validation is enabled, a rare condition during BGP initial session establishment can lead to an rpd crash […]
CVE-2025-52955 – Juniper Networks Junos OS Buffer Overflow Denial of Service
An Incorrect Calculation of Buffer Size vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS allows an adjacent unauthenticated attacker to cause a memory corruption that leads to a rpd crash. When the logical interface using a routing instance flaps continuously, specific updates are sent to the jflow/sflow modules. This results in memory […]
CVE-2025-52954 – Juniper Networks Junos OS Evolved Missing Authorization Root Privilege Escalation Vulnerability
A Missing Authorization vulnerability in the internal virtual routing and forwarding (VRF) of Juniper Networks Junos OS Evolved allows a local, low-privileged user to gain root privileges, leading to a system compromise. Any low-privileged user with the capability to send packets over the internal VRF can execute arbitrary Junos commands and modify the configuration, and thus […]
CVE-2025-52953 – Juniper Networks Junos OS and Junos OS Evolved BGP UPDATE Packet Processing Denial of Service
An Expected Behavior Violation vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated adjacent attacker sending a valid BGP UPDATE packet to cause a BGP session reset, resulting in a Denial of Service (DoS). Continuous receipt and processing of this packet will create a sustained Denial […]
CVE-2025-52947 – Juniper Networks Junos OS ACX Series Improper Exception Handling Denial of Service
An Improper Handling of Exceptional Conditions vulnerability in route processing of Juniper Networks Junos OS on specific end-of-life (EOL) ACX Series platforms allows an attacker to crash the Forwarding Engine Board (FEB) by flapping an interface, leading to a Denial of Service (DoS). On ACX1000, ACX1100, ACX2000, ACX2100, ACX2200, ACX4000, ACX5048, and ACX5096 devices, FEB0 will […]
CVE-2025-52952 – Juniper Networks Junos OS CFM Daemon Out-of-Bounds Write Vulnerability
The following table lists the changes that have been made to the CVE-2025-52952 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 11, 2025 Action […]
CVE-2025-52951 – Juniper Networks Junos OS IPv6 Firewall Bypass Protection Mechanism Failure
A Protection Mechanism Failure vulnerability in kernel filter processing of Juniper Networks Junos OS allows an attacker sending IPv6 traffic to an interface to effectively bypass any firewall filtering configured on the interface. Due to an issue with Junos OS kernel filter processing, the ‘payload-protocol’ match is not being supported, causing any term containing it to […]
CVE-2025-52950 – Juniper Networks Security Director Missing Authorization Vulnerability
The following table lists the changes that have been made to the CVE-2025-52950 vulnerability over time. Vulnerability history details can be useful for understanding the evolution of a vulnerability, and for identifying the most recent changes that may impact the vulnerability’s severity, exploitability, or other characteristics. New CVE Received by [email protected] Jul. 11, 2025 Action […]
CVE-2025-52949 – Juniper Networks Junos OS and Junos OS Evolved BGP Improper Length Parameter Handling Denial of Service
An Improper Handling of Length Parameter Inconsistency vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows a logically adjacent BGP peer sending a specifically malformed BGP packet to cause rpd to crash and restart, resulting in a Denial of Service (DoS). Continued receipt and processing of this […]
CVE-2025-52948 – Juniper Networks Junos OS BPF Exceptional Condition Handling Vulnerability
An Improper Handling of Exceptional Conditions vulnerability in Berkeley Packet Filter (BPF) processing of Juniper Networks Junos OS allows an attacker, in rare cases, sending specific, unknown traffic patterns to cause the FPC and system to crash and restart. BPF provides a raw interface to data link layers in a protocol independent fashion. Internally within […]