CVE-2025-52964 Information
Description
A Reachable Assertion vulnerability in the Routing Protocol Daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an unauthenticated network-based attacker to cause a Denial of Service (DoS).
When the device receives a specific BGP UPDATE packet the rpd crashes and restarts. Continuous receipt of this specific packet will cause a sustained DoS condition.
For the issue to occur BGP multipath with \pause-computation-during-churn\ must be configured on the device and the attacker must send the paths via a BGP UPDATE from a established BGP peer.
This issue affects: Junos OS: All versions before 21.4R3-S7 from 22.3 before 22.3R3-S3 from 22.4 before 22.4R3-S5 from 23.2 before 23.2R2 from 23.4 before 23.4R2.
Junos OS Evolved: All versions before 21.4R3-S7-EVO from 22.3 before 22.3R3-S3-EVO from 22.4 before 22.4R3-S5-EVO from 23.2 before 23.2R2-EVO from 23.4 before 23.4R2-EVO.
CVSS Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Reference
https://supportportal.juniper.net/JSA100080
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
NONE
Availability Impact
NONE
Base Score
HIGH
Base Severity
6.5
Related CNNVD
CNNVD-202507-1662 (Published: 2025-07-11)
Share on: