Vulnerability Database

309,136

Total vulnerabilities in the database

CVE-2025-52952

An Out-of-bounds Write vulnerability in the connectivity fault management (CFM) daemon of Juniper Networks Junos OS on MX Series with MPC-BUILTIN, MPC1 through MPC9 line cards allows an unauthenticated adjacent attacker to send a malformed packet to the device, leading to an FPC crash and restart, resulting in a Denial of Service (DoS).

Continued receipt and processing of this packet will create a sustained Denial of Service (DoS) condition.

This issue affects Juniper Networks: Junos OS:

  • All versions before 22.2R3-S1,
  • from 22.4 before 22.4R2.

This feature is not enabled by default.

  • Published: Jul 11, 2025
  • Updated: Nov 16, 2025
  • CVE: CVE-2025-52952
  • Severity: Medium
  • Exploit:

CVSS v3:

  • Severity: Medium
  • Score: 6.5
  • AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CWEs: