Untrusted Pointer Dereference Vulnerability in Juniper Networks Junos OS
CVE-2025-59959
Key Information:
- Vendor
Juniper Networks
- Status
- Vendor
- CVE Published:
- 15 January 2026
Badges
What is CVE-2025-59959?
An untrusted pointer dereference vulnerability within Juniper Networks’ routing protocol daemon (rpd) can be exploited by a local, authenticated attacker with limited privileges. When executing the command 'show route < ( receive-protocol | advertising-protocol ) bgp > detail', the presence of certain attributes in the intended output may trigger a crash and restart of the rpd, leading to service disruption. To mitigate this issue, users are advised to upgrade to the latest versions of Junos OS and Junos OS Evolved.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Junos OS 0 < 22.4R3-S8
Junos OS 23.2 < 23.2R2-S5
Junos OS 23.4 < 23.4R2-S5
References
CVSS V4
Timeline
- 👾
Exploit known to exist
Vulnerability published
Vulnerability Reserved