PT-2026-56929 · Juniper Networks · Junos+1
CVE-2026-33801
·
Published
2026-07-09
·
Updated
2026-07-10
CVSS v3.1
6.5
Medium
| Vector | AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Junos OS versions 25.2 through 25.2R1
Junos OS Evolved versions 25.2 through 25.2R1-EVO
Description
An improper check for unusual or exceptional conditions in the routing protocol daemon (RPD) allows an adjacent, unauthenticated attacker to cause a Denial-of-Service (DoS). By sending a specifically malformed non-inet/inet6 unicast BGP update over an established BGP session, the attacker can trigger an RPD crash and restart. This results in a complete service outage until routing has reconverged. The crash occurs before the update is readvertised, preventing downstream propagation.
Recommendations
Update Junos OS to version 25.2R2 or later.
Update Junos OS Evolved to version 25.2R2-EVO or later.
Fix
DoS
Improper Check for Exceptional Conditions
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Junos
Junos Evolved