cbcvebase.
CVE-2025-52955
published 2025-07-11

CVE-2025-52955: An Incorrect Calculation of Buffer Size vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent…

high7.1CVSS 4.0
AVAACLATNPRNUINVCNVINVAHSCNSINSALEXCRXIRXARXMAVXMACXMATXMPRXMUIXMVCXMVIXMVAXMSCXMSIXMSAXSXAUXRAVXREXUGreen
An Incorrect Calculation of Buffer Size vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent unauthenticated attacker to cause a memory corruption that leads to a rpd crash. When the logical interface using a routing instance flaps continuously, specific updates are sent to the jflow/sflow modules. This results in memory corruption, leading to an rpd crash and restart. Continued receipt of these specific updates will cause a sustained Denial of Service condition. This issue affects Junos OS: * All versions before 21.2R3-S9, * All versions of 21.4, * All versions of 22.2, * from 22.4 before 22.4R3-S7, * from 23.2 before 23.2R2-S3, * from 23.4 before 23.4R2-S4, * from 24.2 before 24.2R2. Junos OS Evolved: * All versions of 21.2-EVO, * All versions of 21.4-EVO, * All versions of 22.2-EVO, * from 22.4 before 22.4R3-S7-EVO, * from 23.2 before 23.2R2-S3-EVO, * from 23.4 before 23.4R2-S4-EVO, * from 24.2 before 24.2R2-EVO.

Affected

30 ranges· showing 25
VendorProductVersion rangeFixed in
juniperjunos< 21.221.2
juniperjunos
juniperjunos
juniperjunos
juniperjunos
juniperjunos
juniperjunos
juniperjunos
juniperjunos_os
juniperjunos_os_evolved
juniperjunos_os_evolved
juniperjunos_os_evolved
juniperjunos_os_evolved
juniperjunos_os_evolved
juniperjunos_os_evolved
juniperjunos_os_evolved
juniper_networksjunos_os< 21.2R3-S921.2R3-S9
juniper_networksjunos_os>= 21.4 < 21.4*21.4*
juniper_networksjunos_os>= 22.2 < 22.2*22.2*
juniper_networksjunos_os>= 22.4 < 22.4R3-S722.4R3-S7
juniper_networksjunos_os>= 23.2 < 23.2R2-S323.2R2-S3
juniper_networksjunos_os>= 23.4 < 23.4R2-S423.4R2-S4
juniper_networksjunos_os>= 24.2 < 24.2R224.2R2
juniper_networksjunos_os_evolved< 21.2*-EVO21.2*-EVO
juniper_networksjunos_os_evolved>= 21.4 < 21.4*-EVO21.4*-EVO