Database/Firmware, BMC & network fabric
Juniper Junos OS kernel: **[KEV]** Improper isolation in the Junos kernel lets a local attacker with shell access inject
CVE-2025-21590Firmware, BMC & network fabricKnown exploitedcurated
Impact
**[KEV]** Improper isolation in the Junos kernel lets a local attacker with shell access inject arbitrary code — exploited in the wild to implant persistent backdoors on routers
Who can reach it
Local, shell access
What to do
Junos upgrade fleet-wide with routing failover; the in-the-wild usage means affected devices need forensic verification, not just patching
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.