Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1110 CNY

100%

Junos OS — Vulnerabilities & Security Advisories 660

All 660 CVE vulnerabilities found in Junos OS, with AI-generated Chinese analysis, references, and POCs.

This page details the vulnerability aggregation for Juniper Networks’ Junos OS, focusing on Common Weakness Enumerations (CWE) associated with this specific network operating system. It serves as a centralized resource for security professionals to monitor the stability and security posture of Juniper’s flagship software suite used in routers, switches, and other enterprise infrastructure devices. The content on this page compiles historical and recent vulnerability data affecting Junos OS, encompassing a broad time range from early releases to the most current updates. The collection includes weaknesses related to memory corruption, privilege escalation, input validation failures, and security configuration bypasses. By aggregating these findings, the page aims to provide a comprehensive view of the evolving threat landscape specific to Juniper’s software environment, allowing users to see trends in how different types of weaknesses have been identified and remediated over time. Here, you can track a vendor's advisories by navigating through release notes and security bulletins linked to specific versions. You can also understand a weakness class by examining how specific CWEs manifest within the context of network device firmware and software. Additionally, the page allows you to look up a product's vulnerability history, providing insights into the frequency and severity of past security incidents. This structured approach helps administrators prioritize patching efforts and assess the risk profile of their deployed Juniper equipment without needing to sift through disjointed sources. The focus remains strictly on factual reporting of vulnerabilities to support informed decision-making regarding network security maintenance and compliance.

Vendor: Juniper Networks

CVE IDTitleCVSSSeverityPublished
CVE-2020-1665 Junos OS: MX series/EX9200 Series: IPv6 DDoS protection does not work as expected. CWE-794 5.3 Medium2020-10-16
CVE-2020-1662 Junos OS and Junos OS Evolved: RPD crash due to BGP session flapping. CWE-20 7.5 High2020-10-16
CVE-2020-1664 Junos OS: Buffer overflow vulnerability in device control daemon CWE-121 7.8 High2020-10-16
CVE-2020-1657 Junos OS: SRX Series: An attacker sending spoofed packets to IPSec peers may cause a Denial of Service. CWE-408 7.5 High2020-10-16
CVE-2020-1660 Junos OS: MX Series: Receipt of specific packets can cause services card to restart when DNS filtering is configured. 8.3 High2020-10-16
CVE-2020-1661 Junos OS: jdhcpd process crash when forwarding a malformed DHCP packet. 5.3 Medium2020-10-16
CVE-2020-1656 Junos OS: When a DHCPv6 Relay-Agent is configured upon receipt of a specific DHCPv6 client message, Remote Code Execution may occur. 8.8 High2020-10-16
CVE-2020-1655 Junos OS: MX Series: PFE crash on MPC7/8/9 upon receipt of large packets requiring fragmentation 5.3 Medium2020-07-17
CVE-2020-1653 Junos OS: Kernel crash (vmcore) or FPC crash due to mbuf leak CWE-159 7.5 High2020-07-17
CVE-2020-1654 Junos OS: SRX Series: processing a malformed HTTP message when ICAP redirect service is enabled may can lead to flowd process crash or remote code execution CWE-120 9.8 Critical2020-07-17
CVE-2020-1651 Junos OS: MX Series: PFE on the line card may crash due to memory leak. CWE-19 6.5 Medium2020-07-17
CVE-2020-1649 Junos OS: MX Series: PFE crash on MPC7/8/9 upon receipt of small fragments requiring reassembly 7.5 High2020-07-17
CVE-2020-1650 Junos OS: MX Series: Denial of Service vulnerability in MS-PIC component on MS-MIC or MS-MPC 7.5 High2020-07-17
CVE-2020-1647 Junos OS: SRX Series: Double free vulnerability can lead to DoS or remote code execution due to the processing of a specific HTTP message when ICAP redirect service is enabled CWE-415 9.8 Critical2020-07-17
CVE-2020-1648 Junos OS and Junos OS Evolved: RPD crash when processing a specific BGP packet CWE-159 7.5 High2020-07-17
CVE-2020-1645 Junos OS: MX Series: Services card might restart when DNS filtering is enabled CWE-362 8.3 High2020-07-17
CVE-2020-1646 Junos OS and Junos OS Evolved: RPD crash while processing a specific BGP update information. 7.5 High2020-07-17
CVE-2020-1641 Junos OS: A race condition on receipt of crafted LLDP packets leads to a memory leak and an LLDP crash. CWE-362 6.5 Medium2020-07-17
CVE-2020-1643 Junos OS: EX Series: RPD crash when executing specific "show ospf interface" commands from the CLI with OSPF authentication configured CWE-755 5.5 Medium2020-07-17
CVE-2020-1644 Junos OS and Junos OS Evolved: RPD crash due to specific BGP UPDATE packets CWE-703 7.5 High2020-07-17
CVE-2020-1640 Junos OS: Receipt of certain genuine BGP packets from any BGP Speaker causes RPD to crash. CWE-1173 7.5 High2020-07-17
CVE-2020-1631 Out of Cycle Security Advisory: Junos OS: Security vulnerability in J-Web and web based (HTTP/HTTPS) services CWE-22 8.8 High2020-05-04
CVE-2020-1632 Junos OS and Junos OS Evolved: Invalid BGP UPDATE sent to peer device may cause BGP session to terminate. 8.6 High2020-04-15
CVE-2020-1633 Junos OS: MX Series: Crafted packets traversing a Broadband Network Gateway (BNG) configured with IPv6 NDP proxy could lead to Denial of Service CWE-20 7.4 High2020-04-09
CVE-2020-1638 Junos OS & Junos OS Evolved: A specific IPv4 packet can lead to FPC restart. CWE-467 7.5 High2020-04-08
CVE-2020-1639 Junos OS: A crafted Ethernet OAM packet received by Junos may cause the Ethernet OAM connectivity fault management process (CFM) to core. CWE-703 7.5 High2020-04-08
CVE-2020-1634 Junos OS: High-End SRX Series: Multicast traffic might cause all FPCs to reset. 7.5 High2020-04-08
CVE-2020-1637 Junos OS: SRX Series: Unified Access Control (UAC) bypass vulnerability CWE-288 7.2 High2020-04-08
CVE-2020-1629 Junos OS: A race condition vulnerability may cause RPD daemon to crash when processing a BGP NOTIFICATION message. CWE-366 5.9 Medium2020-04-08
CVE-2020-1630 Junos OS: Privilege escalation vulnerability in dual REs, VC or HA cluster may allow unauthorized configuration change. CWE-264 5.0 Medium2020-04-08

All 660 known CVE vulnerabilities affecting Junos OS with full Chinese analysis, references, and POCs where available.