Impact
A flaw in the IKE daemon (iked) of Juniper Networks Junos OS on MX with SPC3 and SRX Series allows unauthenticated, network-based attackers to trigger a denial‑of‑service. This weakness is a Use of Multiple Resources with Duplicate Identifier vulnerability (CWE‑694). When a large number of VPN negotiations fail, the daemon’s peer index rolls over and new peers are assigned indices that are already in use. This causes iked to crash repeatedly, preventing new VPN connections from being established and interrupting rekeying of existing ones. The crash cannot be detected or monitored directly; the only way to recover is by rebooting the device.
Affected Systems
Juniper Networks Junos OS running on MX with SPC3 and SRX Series devices that execute iked. All releases prior to 23.2R2-S7, 23.4R2-S6, 24.2R2-S3, 24.4R2-S4, and 25.2R1-S1 are affected; subsequent releases contain the fix.
Risk and Exploitability
Based on the description, it is inferred that attackers only need to send a large volume of failed VPN negotiation packets, with no authentication or special privileges required. The CVSS score of 6.9 reflects a moderate severity risk. The EPSS score of <1% indicates a very low likelihood of exploitation in the wild. The vulnerability is not listed in the CISA KEV catalog. Exploitation results in permanent loss of VPN availability until the device is rebooted.
OpenCVE Enrichment