Juniper Networks Vulnerability Let Remote Attacker Execute Network Attacks
ID: 1a4d2122-bb00-5198-a958-84491b9b1eb1
STIX ID: report--1a4d2122-bb00-5198-a958-84491b9b1eb1
Feed Name: GBHackers
Juniper Networks disclosed CVE-2025-21598: an out-of-bounds read vulnerability in the routing protocol daemon (rpd) triggered by malformed BGP packets when BGP traceoptions are enabled; the flaw (CVSS 7.5) can allow unauthenticated remote attackers to crash rpd, disrupting iBGP/eBGP sessions and potentially propagating across Autonomous Systems. Juniper lists affected Junos and Junos OS Evolved versions, provides patched releases, and recommends disabling BGP packet tracing as a temporary mitigation while applying updates.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
