Product Affected

This issue affects all versions of Junos Space.
Medium

Problem

A Use of a Broken or Risky Cryptographic Algorithm vulnerability in the TLS/SSL server of Juniper Networks Junos Space allows the use of static key ciphers (ssl-static-key-ciphers), reducing the confidentiality of on-path traffic communicated across the connection. These ciphers also do not support Perfect Forward Secrecy (PFS), affecting the long-term confidentiality of encrypted communications.

 

This issue affects all versions of Junos Space before 24.1R5.

Solution

The following software releases have been updated to resolve this specific issue: Junos Space 24.1R5 and all subsequent releases.

This issue is being tracked as 1892735 which is visible on the Customer Support website.

Note: Juniper SIRT's policy is not to evaluate releases which are beyond End of Engineering (EOE) or End of Life (EOL).

Workaround

There are no direct workarounds for this issue.

Ensure any clients connecting to the device do not allow negotiation of static RSA key exchange.

Severity Assessment

Information for how Juniper Networks uses CVSS can be found at KB 16446 [juniper.net] "Common Vulnerability Scoring System (CVSS) and Juniper's Security Advisories."

Modification History

2026-01-14: Initial Publication

Related Information