GPU VulnDB

Database/Firmware, BMC & network fabric

Juniper Junos OS / Junos OS Evolved (rpd BGP session handling): FABRIC DOS: a genuine, valid BGP UPDATE message resets

CVE-2025-52953Firmware, BMC & network fabricJSA100059curated

Impact

FABRIC DOS: a genuine, valid BGP UPDATE message resets a live BGP session between peers. Because the message is valid, no filter catches it — the fabric tears down and rebuilds sessions on demand from an adjacent attacker. Repeated, it keeps the underlay in permanent reconvergence, which for a synchronous training job is indistinguishable from an outage.

Who can reach it

Unauthenticated attacker with adjacent network access able to originate a BGP UPDATE into the fabric.

What to do

Junos upgrade plus reboot, staged across ECMP pairs. There is no clean config workaround because the triggering message is legitimate; tighten which peers you accept sessions from and monitor for session-reset storms in the meantime.

References

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.