Database/Firmware, BMC & network fabric
Juniper Junos OS (QFX5000-Series, EX4600-Series): A physical-access path into affected QFX5000 and EX4600 switches
Impact
A physical-access path into affected QFX5000 and EX4600 switches. QFX5000 is a mainstream data-center leaf platform. Physical-access bugs matter more in this market than they used to: GPU capacity is increasingly resold, subleased and colocated, so 'someone was alone in the rack' is a routine event rather than an exotic threat model.
Who can reach it
Physical access to the switch. Realistic in colocation, shared cages, subleased capacity, and during rack-and-stack by contractors.
What to do
Junos upgrade plus reboot on affected QFX5000/EX4600 platforms. Pair with physical controls — locked cabinets, console-port discipline, and tamper-evident seals — because a firmware patch does not address the underlying access.
References
Related entries
- Juniper Junos OS Evolved (QFX5000 / PTX, multicast packet handling): Crafted multicast packets crash and restartCVE-2025-59969 · Juniper Junos OS Evolved (QFX5000 / PTX, multicast packet handling)Unscored
- ASPEED crypto/ACRY accelerator driver (drivers/crypto/aspeed): The ACRY driver's probe error path and its remove pathCVE-2025-68172 · ASPEED crypto/ACRY accelerator driver (drivers/crypto/aspeed)Unscored
- Linux kernel mlx5_core firmware tracer (diag/fw_tracer): The firmware tracer took format strings directly from deviceCVE-2025-68816 · Linux kernel mlx5_core firmware tracer (diag/fw_tracer)Unscored
- Gigabyte UEFI firmware (SMM, unchecked RBX pointer): An attacker-controlled register is used as an unchecked pointerCVE-2025-7026 · Gigabyte UEFI firmware (SMM, unchecked RBX pointer)Unscored
- Gigabyte UEFI firmware (SMM, NVRAM double pointer dereference): An unvalidated NVRAM variable is dereferenced twiceCVE-2025-7027 · Gigabyte UEFI firmware (SMM, NVRAM double pointer dereference)Unscored
- Gigabyte UEFI firmware (SMM, unvalidated flash function pointers): Function pointer structures governing SPI flashCVE-2025-7028 · Gigabyte UEFI firmware (SMM, unvalidated flash function pointers)Unscored
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.