Juniper Security Updates – 09 January 2025

Juniper has released security updates to fix several vulnerabilities affecting multiple Juniper Networks products.

The addressed vulnerabilities could allow the attacker to obtain sensitive information or perform denial of service attacks to the affected products.

Sample of the addressed vulnerabilities:

1. Juniper Networks Junos OS and Junos OS Evolved Denial of Service Vulnerability (CVE-2025-21599):

  • CVSS: 7.5
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: None
  • Consequences: Denial of Service

2. Juniper Networks Junos OS on SRX Series File System Vulnerability (CVE-2025-21592):

  • CVSS: 5.5
  • Attack Vector: Local
  • Attack Complexity: Low
  • Privileges Required: Low
  • User Interaction: None
  • Consequences: Obtain Information

Affected Products:

  • Junos OS
  • Junos OS Evolved
  • Junos OS SRX Series
Vulnerabilities
  •  CVE-2025-21592
  • CVE-2025-21593
  • CVE-2025-21596
  • CVE-2025-21598
  • CVE-2025-21599
  • CVE-2025-21600
  • CVE-2025-21602
Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Juniper Security Advisory

References