Juniper Networks Junos OS and Junos OS Evolved Out-of-Bounds Read Vulnerability in BGP Routing Protocol Daemon Allowing RPD Crash

Vulnerability

A vulnerability allowing out-of-bounds read has been identified in the routing protocol daemon (RPD) of Juniper Networks Junos OS and Junos OS Evolved. This vulnerability allows an unauthenticated, network-based attacker to send malformed BGP packets to a device with packet receive trace options enabled, causing RPD to crash. The issue affects multiple Junos OS and Junos OS Evolved versions, requires an established BGP session, and can propagate through multiple ASes, impacting both iBGP and eBGP for IPv4 and IPv6.

Impact

Exploitation of this vulnerability leads to a crash of the routing protocol daemon (RPD), disrupting BGP operations on the affected device.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
6.8
impact
2.5
exploitability
7.0
remediation
8.3
relevance
0.0
threat
0.0
urgency
5.7
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.