A Reachable Assertion vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS).On all Junos OS and Junos OS Evolved devices, when route validation is enabled, a rare condition during BGP initial session establishment can lead to an rpd crash and restart. This occurs specifically when the connection request fails during error-handling scenario.
Continued session establishment failures leads to a sustained DoS condition. 
This issue affects Junos OS:
  *  All versions before 22.2R3-S6, 
  *  from 22.4 before 22.4R3-S6, 
  *  from 23.2 before 23.2R2-S3, 
  *  from 23.4 before 23.4R2-S4, 
  *  from 24.2 before 24.2R2; 
Junos OS Evolved: 
  *  All versions before 22.2R3-S6-EVO, 
  *  from 22.4 before 22.4R3-S6-EVO,
  *  from 23.2 before 23.2R2-S3-EVO,
  *  from 23.4 before 23.4R2-S4-EVO, 
  *  from 24.2 before 24.2R2-EVO.
                
            Metrics
Affected Vendors & Products
References
        | Link | Providers | 
|---|---|
| https://supportportal.juniper.net/JSA100066 |     | 
History
                    Sat, 12 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | epss 
 | 
Fri, 11 Jul 2025 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Fri, 11 Jul 2025 15:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A Reachable Assertion vulnerability in the routing protocol daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved allows an adjacent, unauthenticated attacker to cause a Denial of Service (DoS).On all Junos OS and Junos OS Evolved devices, when route validation is enabled, a rare condition during BGP initial session establishment can lead to an rpd crash and restart. This occurs specifically when the connection request fails during error-handling scenario. Continued session establishment failures leads to a sustained DoS condition. This issue affects Junos OS: * All versions before 22.2R3-S6, * from 22.4 before 22.4R3-S6, * from 23.2 before 23.2R2-S3, * from 23.4 before 23.4R2-S4, * from 24.2 before 24.2R2; Junos OS Evolved: * All versions before 22.2R3-S6-EVO, * from 22.4 before 22.4R3-S6-EVO, * from 23.2 before 23.2R2-S3-EVO, * from 23.4 before 23.4R2-S4-EVO, * from 24.2 before 24.2R2-EVO. | |
| Title | Junos OS and Junos OS Evolved: When route validation is enabled, BGP connection establishment failure causes RPD crash | |
| Weaknesses | CWE-617 | |
| References |  | |
| Metrics | cvssV3_1 
 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: juniper
Published: 2025-07-11T14:43:38.431Z
Updated: 2025-07-11T14:55:56.096Z
Reserved: 2025-06-23T13:17:37.424Z
Link: CVE-2025-52958
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-07-11T14:55:47.158Z
 NVD
                        NVD
                    Status : Awaiting Analysis
Published: 2025-07-11T15:15:26.627
Modified: 2025-07-15T13:14:49.980
Link: CVE-2025-52958
 Redhat
                        Redhat
                    No data.