Junos OS Security Update Advisory (CVE-2025-21590)
Overview
We have released a security update that addresses a vulnerability in Junos OS. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2025-21590
Junos OS Version: ~21.2R3-S9
Junos OS Version: ~21.4R3-S10
Junos OS Version: ~22.2R3-S6
Junos OS version: ~22.4R3-S6
Junos OS version: ~23.2R2-S3
Junos OS version: ~23.4R2-S4
Junos OS version: ~24.2R1-S2, 24.2R2
Resolved Vulnerabilities
Improper isolation vulnerability in the Junos OS kernel (CVE-2025-21590)
Vulnerability Patches
Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-21590
Junos OS version: 21.2R3-S9
Junos OS version: 21.4R3-S10
Junos OS version: 22.2R3-S6
Junos OS version: 22.4R3-S6
Junos OS version: 23.2R2-S3
Junos OS version: 23.4R2-S4
Junos OS version: 24.2r1-s2, 24.2r2
Junos OS version: 24.4R1
References
[1] 2025-03 Out-of-Cycle Security Bulletin: Junos OS: A local attacker with shell access can execute arbitrary code (CVE-2025-21590)
https://supportportal.juniper.net/s/article/2025-03-Out-of-Cycle-Security-Bulletin-Junos-OS-A-local-attacker-with-shell-access-can-execute-arbitrary-code-CVE-2025-21590?language=en_US