An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS on MX Series allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS).When processing a high rate of specific GRE traffic destined to the device, the respective PFE will hang causing traffic forwarding to stop. 
When this issue occurs the following logs can be observed:
 <fpc #> MQSS(0): LI-3: Received a parcel with more than 512B accompanying data 
CHASSISD_FPC_ASIC_ERROR: ASIC Error detected <...>
This issue affects Junos OS:
  *  all versions before 21.2R3-S9,
  *  21.4 versions before 21.4R3-S8,
  *  22.2 versions before 22.2R3-S4,
  *  22.4 versions before 22.4R3-S5,
  *  23.2 versions before 23.2R2-S2,
  *  23.4 versions before 23.4R2.
                
            Metrics
Affected Vendors & Products
References
        | Link | Providers | 
|---|---|
| https://supportportal.juniper.net/JSA96471 | 
                     | 
            
History
                    Wed, 09 Apr 2025 21:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        ssvc
         
  | 
Wed, 09 Apr 2025 20:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | An Improper Check for Unusual or Exceptional Conditions vulnerability in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS on MX Series allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS).When processing a high rate of specific GRE traffic destined to the device, the respective PFE will hang causing traffic forwarding to stop. When this issue occurs the following logs can be observed: <fpc #> MQSS(0): LI-3: Received a parcel with more than 512B accompanying data CHASSISD_FPC_ASIC_ERROR: ASIC Error detected <...> This issue affects Junos OS: * all versions before 21.2R3-S9, * 21.4 versions before 21.4R3-S8, * 22.2 versions before 22.2R3-S4, * 22.4 versions before 22.4R3-S5, * 23.2 versions before 23.2R2-S2, * 23.4 versions before 23.4R2. | |
| Title | Junos OS: MX Series: Decapsulation of specific GRE packets leads to PFE reset | |
| Weaknesses | CWE-754 | |
| References | 
         | |
| Metrics | 
        
        cvssV3_1
         
 
  | 
Status: PUBLISHED
Assigner: juniper
Published:
Updated: 2025-04-09T20:29:59.919Z
Reserved: 2025-03-24T19:34:11.323Z
Link: CVE-2025-30660
Updated: 2025-04-09T20:29:54.956Z
Status : Awaiting Analysis
Published: 2025-04-09T20:15:30.307
Modified: 2025-04-11T15:40:10.277
Link: CVE-2025-30660
No data.