Junos OS Security Update Advisory (CVE-2025-21590)

Junos OS Security Update Advisory (CVE-2025-21590)

Overview

We have released a security update that addresses a vulnerability in Junos OS. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

CVE-2025-21590

Junos OS Version: ~21.2R3-S9
Junos OS Version: ~21.4R3-S10
Junos OS Version: ~22.2R3-S6
Junos OS version: ~22.4R3-S6
Junos OS version: ~23.2R2-S3
Junos OS version: ~23.4R2-S4
Junos OS version: ~24.2R1-S2, 24.2R2

 

 

Resolved Vulnerabilities

Improper isolation vulnerability in the Junos OS kernel (CVE-2025-21590)

 

 

Vulnerability Patches

Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
 

 

CVE-2025-21590

Junos OS version: 21.2R3-S9
Junos OS version: 21.4R3-S10
Junos OS version: 22.2R3-S6
Junos OS version: 22.4R3-S6
Junos OS version: 23.2R2-S3
Junos OS version: 23.4R2-S4
Junos OS version: 24.2r1-s2, 24.2r2
Junos OS version: 24.4R1

 

 

References

[1] 2025-03 Out-of-Cycle Security Bulletin: Junos OS: A local attacker with shell access can execute arbitrary code (CVE-2025-21590)
https://supportportal.juniper.net/s/article/2025-03-Out-of-Cycle-Security-Bulletin-Junos-OS-A-local-attacker-with-shell-access-can-execute-arbitrary-code-CVE-2025-21590?language=en_US