CVE-2026-33787: Junos OS: SRX1500, SRX4100, SRX4200, SRX4600: When a specific show command is executed chassisd crashes
An Improper Check for Unusual or Exceptional Conditions vulnerability in the chassis control daemon (chassisd) of Juniper Networks Junos OS on SRX1500, SRX4100, SRX4200 and SRX4600 allows a local attacker with low privileges to cause a complete Denial of Service (DoS).
When a specific 'show chassis' CLI command is executed, chassisd crashes and restarts which causes a momentary impact to all traffic until all modules are online again.
This issue affects Junos OS on SRX1500, SRX4100, SRX4200 and SRX4600:
23.2 versions before 23.2R2-S6, 23.4 versions before 23.4R2-S7 24.2 versions before 24.2R2-S2, 24.4 versions before 24.4R2, 25.2 versions before 25.2R1-S1, 25.2R2.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2026-33787?
CVE-2026-33787 is classified as a critical vulnerability that leads to the chassisd crashing when specific show commands are executed.
How do I fix CVE-2026-33787?
To mitigate CVE-2026-33787, upgrade your Junos OS to the latest versions that address this issue.
Which devices are affected by CVE-2026-33787?
CVE-2026-33787 affects Juniper Networks SRX1500, SRX4100, SRX4200, and SRX4600 running specific versions of Junos OS.
What could happen if CVE-2026-33787 is exploited?
Exploitation of CVE-2026-33787 can cause the chassis control daemon to crash, leading to potential service disruptions.
Is there a workaround for CVE-2026-33787?
Currently, the recommended approach for CVE-2026-33787 is to apply the software updates provided by Juniper Networks.