Use of incorrect operator in Junos OS Evolved - CVE-2025-52985

 

Use of incorrect operator in Junos OS Evolved - CVE-2025-52985

Published: July 23, 2025


Vulnerability identifier: #VU113180
CSH Severity: Medium
CVSS v4: 6.9 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2025-52985
CWE-ID: CWE-480
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote attacker to bypass implemented security restrictions.

The vulnerability exists due to use of incorrect operator in the Routing Engine firewall, when a firewall filter, which is applied to the lo0 or re:mgmt interface, references a prefix list, and that prefix list contains more than 10 entries. In such case the prefix list doesn't match and packets destined to the local device are not filtered.


Affected software

Junos OS Evolved

How to mitigate CVE-2025-52985

Install updates from vendor's website.

Junos OS Evolved - addressed in versions 23.2R2-S4-EVO, 23.4R2-S5-EVO, 24.2R2-S1-EVO, 24.4R1-S3-EVO, 24.4R2-EVO, 25.2R1-EVO

External References

Related Security Bulletins