CVE-2024-39564
CVSS 3.1 Score 7.5 of 10 (high)
Details
Published Feb 5, 2025
CWE ID 415
Summary
CVE-2024-39564 is a newly identified vulnerability in the routing process daemon (rpd) of Juniper Networks Junos OS and Junos OS Evolved. Unlike CVE-2024-39549, this issue involves a double-free memory allocation in the handling of malformed BGP Path attribute updates. This vulnerability results in an rpd crash, causing a Denial of Service (DoS). Affected versions of Junos OS include those from 22.4 before 22.4R3-S4, and Junos OS Evolved versions from 22.4 before 22.4R3-S4-EVO.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share