Denial of Service Vulnerability in Juniper Networks Junos OS and Junos OS Evolved
CVE-2025-21602
6.5MEDIUM
Key Information:
- Vendor
Juniper Networks
- Vendor
- CVE Published:
- 9 January 2025
What is CVE-2025-21602?
An Improper Handling of Exceptional Conditions vulnerability exists within the routing protocol daemon (rpd) of Juniper Networks’ Junos OS and Junos OS Evolved. By sending a specially crafted BGP update packet, an unauthenticated attacker can trigger a crash and subsequent restart of the rpd. This vulnerability is applicable to both iBGP and eBGP communications over IPv4 and IPv6. Continuous processing of this specific packet can lead to a sustained Denial of Service condition.