Juniper Networks Junos OS and Junos OS Evolved BGP Sharding Denial-of-Service Vulnerability

Vulnerability

A vulnerability allowing access to uninitialized pointers has been identified in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved. This vulnerability occurs in versions with BGP sharding configured, where an attacker can trigger indirect next-hop updates. The issue causes rpd to crash and restart, leading to a denial-of-service condition. With BGP sharding enabled, manipulating IGP route changes that BGP routes depend on can cause rpd to fail and restart. Continuously disrupting IGP routes increases the chances of causing this crash, potentially prolonging the denial-of-service effect.

Impact

Exploiting this vulnerability causes the routing protocol daemon (rpd) to crash and restart, disrupting routing processes and causing a denial-of-service condition.

Added: Oct 9, 2025, 4:27 PM
Updated: Oct 9, 2025, 4:27 PM

Vulnerability Rating

Custom Algorithm
spread
6.8
impact
2.5
exploitability
5.9
remediation
7.7
relevance
0.6
threat
0.0
urgency
2.9
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.