Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1310 CNY

100%

Junos OS — Vulnerabilities & Security Advisories 660

All 660 CVE vulnerabilities found in Junos OS, with AI-generated Chinese analysis, references, and POCs.

This page details the vulnerability aggregation for Juniper Networks’ Junos OS, focusing on Common Weakness Enumerations (CWE) associated with this specific network operating system. It serves as a centralized resource for security professionals to monitor the stability and security posture of Juniper’s flagship software suite used in routers, switches, and other enterprise infrastructure devices. The content on this page compiles historical and recent vulnerability data affecting Junos OS, encompassing a broad time range from early releases to the most current updates. The collection includes weaknesses related to memory corruption, privilege escalation, input validation failures, and security configuration bypasses. By aggregating these findings, the page aims to provide a comprehensive view of the evolving threat landscape specific to Juniper’s software environment, allowing users to see trends in how different types of weaknesses have been identified and remediated over time. Here, you can track a vendor's advisories by navigating through release notes and security bulletins linked to specific versions. You can also understand a weakness class by examining how specific CWEs manifest within the context of network device firmware and software. Additionally, the page allows you to look up a product's vulnerability history, providing insights into the frequency and severity of past security incidents. This structured approach helps administrators prioritize patching efforts and assess the risk profile of their deployed Juniper equipment without needing to sift through disjointed sources. The focus remains strictly on factual reporting of vulnerabilities to support informed decision-making regarding network security maintenance and compliance.

Vendor: Juniper Networks

CVE IDTitleCVSSSeverityPublished
CVE-2024-21596 Junos OS and Junos OS Evolved: A specific BGP UPDATE message will cause a crash in the backup Routing Engine in NSR-enabled devices CWE-122 5.3 Medium2024-01-12
CVE-2024-21595 Junos OS: EX4100, EX4400, EX4600, QFX5000 Series: A high rate of specific ICMP traffic will cause the PFE to hang CWE-1286 7.5 High2024-01-12
CVE-2024-21594 Junos OS: SRX 5000 Series: Repeated execution of a specific CLI command causes a flowd crash CWE-122 5.5 Medium2024-01-12
CVE-2024-21591 Junos OS: SRX Series and EX Series: Security Vulnerability in J-web allows a preAuth Remote Code Execution CWE-787 9.8 Critical2024-01-12
CVE-2024-21587 Junos OS: MX Series: Memory leak in bbe-smgd process if BFD liveness detection for DHCP subscribers is enabled CWE-755 6.5 Medium2024-01-12
CVE-2024-21585 Junos OS and Junos OS Evolved: BGP session flaps on NSR-enabled devices can cause rpd crash CWE-755 5.9 Medium2024-01-12
CVE-2023-36842 Junos OS: jdhcpd will hang on receiving a specific DHCP packet CWE-703 6.5 Medium2024-01-12
CVE-2023-44204 Junos OS and Junos OS Evolved: The rpd will crash upon receiving a malformed BGP UPDATE message CWE-1286 6.5 Medium2023-10-12
CVE-2023-44203 Junos OS: QFX5000 Series, EX2300, EX3400, EX4100, EX4400 and EX4600: Packet flooding will occur when IGMP traffic is sent to an isolated VLAN CWE-703 6.5 Medium2023-10-12
CVE-2023-44201 Junos OS and Junos OS Evolved: A local attacker can retrieve sensitive information and elevate privileges on the device to an authorized user. CWE-732 5.0 Medium2023-10-12
CVE-2023-44199 Junos OS: MX Series: In a PTP scenario a prolonged routing protocol churn can trigger an FPC reboot CWE-754 7.5 High2023-10-12
CVE-2023-44198 Junos OS: SRX Series and MX Series: SIP ALG doesn't drop specifically malformed retransmitted SIP packets CWE-754 5.8 Medium2023-10-12
CVE-2023-44197 Junos OS and Junos OS Evolved: An rpd crash may occur when BGP is processing newly learned routes CWE-787 7.5 High2023-10-12
CVE-2023-44194 Junos OS: An unauthenticated attacker with local access to the device can create a backdoor with root privileges CWE-276 8.4 High2023-10-12
CVE-2023-44193 Junos OS: MX Series: An FPC crash is observed when CFM is enabled in a VPLS scenario and a specific LDP related command is run CWE-401 5.5 Medium2023-10-12
CVE-2023-44192 Junos OS: QFX5000 Series: DMA memory leak is observed when specific DHCP packets are transmitted over pseudo-VTEP CWE-20 7.5 High2023-10-12
CVE-2023-44191 Junos OS: QFX5000 Series and EX4000 Series: Denial of Service (DoS) on a large scale VLAN due to PFE hogging CWE-770 7.5 High2023-10-12
CVE-2023-44185 Junos OS and Junos OS Evolved: In an BGP scenario RPD crashes upon receiving and processing a specific malformed ISO VPN BGP UPDATE packet CWE-20 7.5 High2023-10-12
CVE-2023-44184 Junos OS and Junos OS Evolved: High CPU load due to specific NETCONF command CWE-119 6.5 Medium2023-10-12
CVE-2023-44183 Junos OS: QFX5000 Series, EX4600 Series: In a VxLAN scenario an adjacent attacker within the VxLAN sending genuine packets may cause a DMA memory leak to occur. CWE-20 6.5 Medium2023-10-12
CVE-2023-44182 Junos OS and Junos OS Evolved: An Unchecked Return Value in multiple users interfaces affects confidentiality and integrity of device operations CWE-252 7.3 High2023-10-12
CVE-2023-44181 Junos OS: QFX5k: l2 loop in the overlay impacts the stability in a EVPN/VXLAN environment 7.5 High2023-10-12
CVE-2023-44178 Junos OS : Stack overflow vulnerability in CLI command processing CWE-787 5.5 Medium2023-10-12
CVE-2023-44176 Junos OS : Stack overflow vulnerability in CLI command processing CWE-787 5.5 Medium2023-10-12
CVE-2023-44177 Junos OS and Junos OS Evolved: Stack overflow vulnerability in CLI command processing CWE-787 5.5 Medium2023-10-12
CVE-2023-44175 Junos OS and Junos OS Evolved: Receipt of a specific genuine PIM packet causes RPD crash CWE-617 6.5 Medium2023-10-12
CVE-2023-36843 Junos OS: SRX Series: The PFE will crash on receiving malformed SSL traffic when Sky ATP is enabled CWE-168 7.5 High2023-10-12
CVE-2023-36841 Junos OS: MX Series: Receipt of malformed TCP traffic will cause a Denial of Service CWE-400 7.5 High2023-10-12
CVE-2023-36839 Junos OS and Junos OS Evolved: An l2cpd crash will occur when specific LLDP packets are received CWE-1284 6.5 Medium2023-10-12
CVE-2023-22392 Junos OS: PTX Series and QFX10000 Series: Received flow-routes which aren't installed as the hardware doesn't support them, lead to an FPC heap memory leak CWE-401 6.5 Medium2023-10-12

All 660 known CVE vulnerabilities affecting Junos OS with full Chinese analysis, references, and POCs where available.