By weakness (CWE)
CWE-694: related vulnerabilities
CVEs classified under CWE-694. Understanding the weakness class helps prioritize systemic fixes over one-off patches.
1 published vulnerability
- CVE-2026-57024MEDIUM 5.3
Juniper's IKE daemon (iked) on MX devices with SPC3 and SRX Series routers contains a flaw that causes it to crash repeatedly when handling a large number of failed VPN connection attempts. The underlying issue stems from the daemon reusing peer index values that are already assigned, leading to internal state conflicts. Each time iked crashes, it becomes unable to establish new VPN tunnels or refresh existing ones until the entire system is rebooted. An attacker on the network can trigger this by initiating many unsuccessful VPN negotiations, effectively disabling VPN connectivity for an extended period.