Improper Check for Unusual or Exceptional Conditions in Junos OS and Junos OS Evolved - CVE-2026-33801
Published: July 8, 2026
Vulnerability details
The vulnerability allows a remote non-authenticated attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to improper check for unusual or exceptional conditions error in the routing protocol daemon (RPD). A remote non-authenticated attacker can cause a Denial-of-Service (DoS).
Upon receipt of a specifically malformed non-inet/inet6 unicast BGP update, an RPD crash and restart is triggered, which will cause a complete service outage until routing has reconverged.
The rpd crash occurs before the update can be readvertised, so there is no downstream propagation.
Affected software
Junos OS Evolved
How to mitigate CVE-2026-33801
Junos OS Evolved - addressed in versions 25.2R2-EVO, 25.4R1-EVO