CNNVD-202510-1283 Information

CNNVD ID

CNNVD-202510-1283

CVE-2025-60004

  • CNNVD Published: 2025-10-09

Description (Chinese)

Juniper Networks Junos OS和Juniper Networks Junos OS Evolved都是美国瞻博网络(Juniper Networks)公司的产品。Juniper Networks Junos OS是一套专用于该公司的硬件设备的网络操作系统。该操作系统提供了安全编程接口和Junos SDK。Juniper Networks Junos OS Evolved是Junos OS 的升级版系统。 Juniper Networks Junos OS和Juniper Networks Junos OS Evolved存在代码问题漏洞,该漏洞源于路由协议守护进程对异常条件检查不当,可能导致拒绝服务攻击。以下产品及版本受到影响:Juniper Networks Junos OS 23.4R2-S3版本至23.4R2-S5之前版本、24.2R2版本至24.2R2-S1之前版本和24.4R1-S3之前版本、24.4R2版本和Junos OS Evolved 23.4R2-S2-EVO版本至23.4R2-S5-EVO之前版本、24.2R2-EVO版本至24.2R2-S1-EVO之前版本和24.4R1-S3-EVO之前版本、24.4R2-EVO版本。

Description (English)

Juniper Networks Junos OS and Juniper Networks Junos OS Evolved are products of Juniper Networks. Juniper Networks Junos OS is a network operating system dedicated to the hardware equipment of the company. The operating system provides a security programming interface and Junos SDK. Juniper Networks Junos OS Evolved is an upgraded Junos OS system. There is a code gap between Junior Networks Junos OS and Junior Networks Junos OS Evolved, which stems from the inappropriate inspection of abnormal conditions by the route protocol dæmonger process, which may lead to a denial of service attack. The following products and versions were affected: Juniper Networks Junos OS 23.4R2-S3 to 23.4R2-S5, 24.2R2 to 24.2R2-S1 and 24.4R1-S3, 24.4R2 and 23.4R2-S2-EVO to 23.4R2-S5-EVO, 24.2R2-EVO to 24.2R2-S1-EVO and 24.4R1-S3-EVO, 24.4R2-EVO.

Hazard Level

Medium

Vulnerability Type

代码问题

Affected Vendor

瞻博网络

Published

2025-10-09

Last Modified

2026-02-24

References

https://supportportal.juniper.net/JSA103165

Patch

https://supportportal.juniper.net/JSA103165

Share on: