A Use After Free vulnerability in the Layer 2 Address Learning Manager (l2alm) of Juniper Networks Junos OS on QFX Series allows an adjacent attacker to cause the Packet Forwarding Engine to crash and restart, leading to a Denial of Service (DoS). The PFE may crash when a lot of MAC learning and aging happens, but due to a Race Condition (Concurrent Execution using Shared Resource with Improper Synchronization) that is outside the attackers direct control. This issue affects: Juniper Networks Junos OS versions prior to 19.4R3-S10 on QFX Series; 20.2 versions prior to 20.2R3-S7 on QFX Series; 20.3 versions prior to 20.3R3-S6 on QFX Series; 20.4 versions prior to 20.4R3-S5 on QFX Series; 21.1 versions prior to 21.1R3-S4 on QFX Series; 21.2 versions prior to 21.2R3-S3 on QFX Series; 21.3 versions prior to 21.3R3-S3 on QFX Series; 21.4 versions prior to 21.4R3 on QFX Series; 22.1 versions prior to 22.1R3 on QFX Series; 22.2 versions prior to 22.2R2 on QFX Series.
References
Link | Resource |
---|---|
https://supportportal.juniper.net/JSA70610 | Vendor Advisory |
https://supportportal.juniper.net/JSA70610 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 07:56
Type | Values Removed | Values Added |
---|---|---|
References | () https://supportportal.juniper.net/JSA70610 - Vendor Advisory |
Information
Published : 2023-04-17 22:15
Updated : 2024-11-21 07:56
NVD link : CVE-2023-28984
Mitre link : CVE-2023-28984
CVE.ORG link : CVE-2023-28984
JSON object : View
Products Affected
juniper
- qfx10002-72q
- qfx10016
- qfx10000
- qfx10008
- qfx10002-32q
- junos
- qfx10002
- qfx10k
- qfx10002-60c
- qfx5210-64c
- qfx5100
- qfx3000-g
- qfx3600-i
- qfx3008-i
- qfx5110
- qfx5220
- qfx3100
- qfx5130
- qfx5200
- qfx3000-m
- qfx5200-48y
- qfx3500
- qfx5210
- qfx5120
- qfx5200-32c
- qfx5100-96s
- qfx3600