Juniper Networks Junos OS Improper Exception Handling Vulnerability on SRX1500, SRX4100, and SRX4200 Devices Leading to Denial-of-Service

Vulnerability

A vulnerability has been identified in the command-line processing of Juniper Networks Junos OS, specifically on SRX1500, SRX4100, and SRX4200 devices. This vulnerability involves improper handling of exceptional conditions, allowing a local, low-privileged authenticated attacker to execute the 'show chassis environment pem' command and cause the chassis daemon (chassisd) to crash and restart. This disruption results in a temporary denial-of-service condition. However, if the command is executed repeatedly, the chassisd process may fail to restart, adversely affecting packet processing on the system.

Impact

Exploitation of this vulnerability causes the chassisd process to crash, restart, and eventually fail to restart after repeated executions of the 'show chassis environment pem' command, disrupting packet processing on the affected device.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
6.8
impact
2.5
exploitability
3.5
remediation
0.0
relevance
0.0
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.