n Out-of-bounds Write vulnerability in the connectivity fault management (CFM) daemon of Juniper Networks Junos OS on MX Series with MPC-BUILTIN, MPC1 through MPC9 line cards allows an unauthenticated adjacent attacker to send a malformed packet to the device, leading to an FPC crash and restart, resulting in a Denial of Service (DoS). Continued receipt and processing of this packet will create a sustained Denial of Service (DoS) condition. This issue affects Juniper Networks: Junos OS: * All versions before 22.2R3-S1, * from 22.4 before 22.4R2. This feature is not enabled by default.
| Link | Resource |
|---|---|
| https://supportportal.juniper.net/JSA100058 | Vendor Advisory |
| https://www.juniper.net/documentation/us/en/software/junos/network-mgmt/topics/topic-map/cfm-configuring.html | Product |
Configuration 1 (hide)
| AND |
|
26 Jan 2026, 18:31
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://supportportal.juniper.net/JSA100058 - Vendor Advisory | |
| References | () https://www.juniper.net/documentation/us/en/software/junos/network-mgmt/topics/topic-map/cfm-configuring.html - Product | |
| First Time |
Juniper mpc9e
Juniper mx480 Juniper mx240 Juniper 6x40ge \+ 24x10ge Mpc5e Juniper mpc2 Eq Juniper mpc1 Q Juniper 6x40ge \+ 24x10ge Mpc5eq Juniper Juniper mx2010 Juniper mpc1e Juniper mpc6e Juniper mpc2e Q Juniper mpc2 Q Juniper mpc2e Eq Juniper 2x100ge \+ 4x10ge Mpc5e Juniper mpc2e Ng Juniper mx2020 Juniper mpc3e-3d-ng Juniper junos Juniper mpc2e Juniper mx2008 Juniper mpc1e Q Juniper mpc1 Juniper mpc2 Juniper 2x100ge \+ 4x10ge Mpc5eq Juniper mpc7e-mrate Juniper 2x100ge \+ 8x10ge Mpc4e Juniper mpc3e Juniper mpc2e Ng Q Juniper mpc8e Juniper mx960 Juniper 32x10ge Mpc4e Juniper mpc7e-10g Juniper mpc2e P Juniper mpc3e-3d-ng-q |
|
| CPE | cpe:2.3:h:juniper:mx480:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc2:-:*:*:*:*:*:*:* cpe:2.3:o:juniper:junos:22.2:r3:*:*:*:*:*:* cpe:2.3:h:juniper:mpc2e_ng:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc1e:-:*:*:*:*:*:*:* cpe:2.3:o:juniper:junos:22.2:r1-s2:*:*:*:*:*:* cpe:2.3:o:juniper:junos:22.4:-:*:*:*:*:*:* cpe:2.3:h:juniper:mpc2e_eq:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:6x40ge_\+_24x10ge_mpc5eq:-:*:*:*:*:*:*:* cpe:2.3:o:juniper:junos:*:*:*:*:*:*:*:* cpe:2.3:o:juniper:junos:22.2:r2:*:*:*:*:*:* cpe:2.3:o:juniper:junos:22.4:r1-s1:*:*:*:*:*:* cpe:2.3:h:juniper:mpc2_q:-:*:*:*:*:*:*:* cpe:2.3:o:juniper:junos:22.2:r1:*:*:*:*:*:* cpe:2.3:h:juniper:mpc1_q:-:*:*:*:*:*:*:* cpe:2.3:o:juniper:junos:22.2:-:*:*:*:*:*:* cpe:2.3:h:juniper:mpc2e_ng_q:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:2x100ge_\+_4x10ge_mpc5eq:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc2e_q:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc3e:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc2e_p:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:2x100ge_\+_8x10ge_mpc4e:-:*:*:*:*:*:*:* cpe:2.3:o:juniper:junos:22.4:r1-s2:*:*:*:*:*:* cpe:2.3:o:juniper:junos:22.2:r1-s1:*:*:*:*:*:* cpe:2.3:h:juniper:mpc3e-3d-ng:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc7e-10g:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc2e:-:*:*:*:*:*:*:* cpe:2.3:o:juniper:junos:22.4:r1:*:*:*:*:*:* cpe:2.3:h:juniper:mx2008:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mx240:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc2_eq:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:32x10ge_mpc4e:-:*:*:*:*:*:*:* cpe:2.3:o:juniper:junos:22.2:r2-s2:*:*:*:*:*:* cpe:2.3:h:juniper:mpc3e-3d-ng-q:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:2x100ge_\+_4x10ge_mpc5e:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc1:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc7e-mrate:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:6x40ge_\+_24x10ge_mpc5e:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc1e_q:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc8e:-:*:*:*:*:*:*:* cpe:2.3:o:juniper:junos:22.2:r2-s1:*:*:*:*:*:* cpe:2.3:h:juniper:mx2010:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mx2020:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc9e:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mx960:-:*:*:*:*:*:*:* cpe:2.3:h:juniper:mpc6e:-:*:*:*:*:*:*:* |
15 Jul 2025, 13:14
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
11 Jul 2025, 15:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Published : 2025-07-11 15:15
Updated : 2026-01-26 18:31
NVD link : CVE-2025-52952
Mitre link : CVE-2025-52952
CVE.ORG link : CVE-2025-52952
JSON object : View
- junos
- mpc1e_q
- mpc2e_p
- mpc2
- mpc3e-3d-ng-q
- mx2010
- 6x40ge_\+_24x10ge_mpc5eq
- mpc2e_q
- 2x100ge_\+_4x10ge_mpc5eq
- 2x100ge_\+_8x10ge_mpc4e
- mpc3e
- mpc2e_eq
- mpc2_q
- 2x100ge_\+_4x10ge_mpc5e
- mpc9e
- mpc2_eq
- 32x10ge_mpc4e
- mpc3e-3d-ng
- mx960
- mx2008
- mpc1e
- mpc2e_ng
- mpc1
- mx2020
- mpc6e
- mpc7e-mrate
- 6x40ge_\+_24x10ge_mpc5e
- mx480
- mpc1_q
- mpc2e_ng_q
- mx240
- mpc7e-10g
- mpc8e
- mpc2e
Out-of-bounds Write