Juniper Networks Junos OS Chassis Control Daemon Denial-of-Service Vulnerability

Vulnerability

A denial-of-service vulnerability has been identified in the chassis control daemon (chassisd) of Juniper Networks Junos OS. This issue affects the SRX1500, SRX4100, SRX4200, and SRX4600 platforms. The vulnerability allows a local attacker with low privileges to cause chassisd to crash and restart, temporarily disrupting all traffic until the modules are fully online again. The issue arises when a specific 'show chassis' CLI command is executed.

Impact

Exploitation of this vulnerability leads to a complete denial-of-service condition, causing the chassisd process to crash and restart. This interruption temporarily affects all traffic until the system modules are fully operational again.

Remediation

Users can upgrade to Junos OS versions 23.2R2-S6, 23.4R2-S7, 24.2R2-S2, 24.4R2, 25.2R1-S1, 25.2R2, 25.4R1, or any subsequent release. Additionally, access lists or firewall filters can be used to restrict CLI access to trusted hosts and administrators, and CLI authorization can be implemented to prevent the execution of the 'show chassis' command.

Added: Apr 10, 2026, 12:26 AM
Updated: Apr 10, 2026, 12:26 AM

Vulnerability Rating

Custom Algorithm
spread
6.8
impact
2.5
exploitability
3.1
remediation
7.9
relevance
5.5
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.