#VU107434 Improper handling of additional special element in Juniper Junos OS - CVE-2025-30656
Published: April 14, 2025
Juniper Junos OS
Juniper Networks, Inc.
Description
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper handling of additional special element error in the Packet Forwarding Engine (PFE). A remote non-authenticated attacker can cause a Denial-of-Service (DoS).
If the SIP ALG processes specifically formatted SIP invites, a memory corruption will occur which will lead to a crash of the FPC processing these packets.
Although the system will automatically recover with the restart of the FPC, subsequent SIP invites will cause the crash again and lead to a sustained DoS.