Vulnerability Description
A Use of Multiple Resources with Duplicate Identifier vulnerability in the IKE daemon (iked) of Juniper Networks Junos OS on MX with SPC3 and SRX Series allows an unauthenticated, network-based attacker to cause a Denial-of-Service (DoS). On an MX with SPC3 and SRX devices configured for VPN service, when a large number of VPN negotiations fail a peer index rollover will eventually occur. As a result, new peers are assigned index values that are already in use and the iked process starts to crash repeatedly. This results in failure to establish new VPN connections and rekeying existing ones. To restore service the system must be rebooted. Please note that the index value can't be monitored, so customers should monitor tunnel up and down events and if a lot of events occur over an extended period of time it becomes likely that this issue occurs. To be exposed to this issue the system needs to run iked (vs. kmd which is not affected), which can be verified with: user@host> show system processes extensive | match "KMD|IKED" This issue affects Junos OS on MX with SPC3, SRX Series: * all versions before 23.2R2-S7, * 23.4 versions before 23.4R2-S6, * 24.2 versions before 24.2R2-S3, * 24.4 versions before 24.4R2-S4, * 25.2 versions before 25.2R1-S1.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Juniper | Junos | < 23.2 |
| Juniper | Mx-Spc3 | - |
| Juniper | Mx240 | - |
| Juniper | Mx480 | - |
| Juniper | Mx960 | - |
| Juniper | Srx1500 | - |
| Juniper | Srx1600 | - |
| Juniper | Srx2300 | - |
| Juniper | Srx300 | - |
| Juniper | Srx320 | - |
| Juniper | Srx340 | - |
| Juniper | Srx345 | - |
| Juniper | Srx380 | - |
| Juniper | Srx400 | - |
| Juniper | Srx4100 | - |
| Juniper | Srx4120 | - |
| Juniper | Srx4200 | - |
| Juniper | Srx4300 | - |
| Juniper | Srx440 | - |
| Juniper | Srx4600 | - |
Related Weaknesses (CWE)
References
- https://supportportal.juniper.net/JSA110084Vendor Advisory
FAQ
What is CVE-2026-57024?
CVE-2026-57024 is a vulnerability with a CVSS score of 5.3 (MEDIUM). A Use of Multiple Resources with Duplicate Identifier vulnerability in the IKE daemon (iked) of Juniper Networks Junos OS on MX with SPC3 and SRX Series allows an unauthenticated, network-based attack...
How severe is CVE-2026-57024?
CVE-2026-57024 has been rated MEDIUM with a CVSS base score of 5.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-57024?
Check the references section above for vendor advisories and patch information. Affected products include: Juniper Junos, Juniper Mx-Spc3, Juniper Mx240, Juniper Mx480, Juniper Mx960.