Vulnerability Details CVE-2023-28984
A Use After Free vulnerability in the Layer 2 Address Learning Manager (l2alm) of Juniper Networks Junos OS on QFX Series allows an adjacent attacker to cause the Packet Forwarding Engine to crash and restart, leading to a Denial of Service (DoS). The PFE may crash when a lot of MAC learning and aging happens, but due to a Race Condition (Concurrent Execution using Shared Resource with Improper Synchronization) that is outside the attackers direct control. This issue affects: Juniper Networks Junos OS versions prior to 19.4R3-S10 on QFX Series; 20.2 versions prior to 20.2R3-S7 on QFX Series; 20.3 versions prior to 20.3R3-S6 on QFX Series; 20.4 versions prior to 20.4R3-S5 on QFX Series; 21.1 versions prior to 21.1R3-S4 on QFX Series; 21.2 versions prior to 21.2R3-S3 on QFX Series; 21.3 versions prior to 21.3R3-S3 on QFX Series; 21.4 versions prior to 21.4R3 on QFX Series; 22.1 versions prior to 22.1R3 on QFX Series; 22.2 versions prior to 22.2R2 on QFX Series.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.001
EPSS Ranking 17.7%
CVSS Severity
CVSS v3 Score 5.3
Products affected by CVE-2023-28984
-
cpe:2.3:h:juniper:qfx10000:-
-
cpe:2.3:h:juniper:qfx10002-32q:-
-
cpe:2.3:h:juniper:qfx10002-60c:-
-
cpe:2.3:h:juniper:qfx10002-72q:-
-
cpe:2.3:h:juniper:qfx10002:-
-
cpe:2.3:h:juniper:qfx10008:-
-
cpe:2.3:h:juniper:qfx10016:-
-
cpe:2.3:h:juniper:qfx10k:-
-
cpe:2.3:h:juniper:qfx3000-g:-
-
cpe:2.3:h:juniper:qfx3000-m:-
-
cpe:2.3:h:juniper:qfx3008-i:-
-
cpe:2.3:h:juniper:qfx3100:-
-
cpe:2.3:h:juniper:qfx3500:-
-
cpe:2.3:h:juniper:qfx3600-i:-
-
cpe:2.3:h:juniper:qfx3600:-
-
cpe:2.3:h:juniper:qfx5100-96s:-
-
cpe:2.3:h:juniper:qfx5100:-
-
cpe:2.3:h:juniper:qfx5110:-
-
cpe:2.3:h:juniper:qfx5120:-
-
cpe:2.3:h:juniper:qfx5130:-
-
cpe:2.3:h:juniper:qfx5200-32c:-
-
cpe:2.3:h:juniper:qfx5200-48y:-
-
cpe:2.3:h:juniper:qfx5200:-
-
cpe:2.3:h:juniper:qfx5210-64c:-
-
cpe:2.3:h:juniper:qfx5210:-
-
cpe:2.3:h:juniper:qfx5220:-
-
cpe:2.3:o:juniper:junos:20.2
-
cpe:2.3:o:juniper:junos:20.3
-
cpe:2.3:o:juniper:junos:20.4
-
cpe:2.3:o:juniper:junos:21.1
-
cpe:2.3:o:juniper:junos:21.2
-
cpe:2.3:o:juniper:junos:21.3
-
cpe:2.3:o:juniper:junos:21.4
-
cpe:2.3:o:juniper:junos:22.1
-
cpe:2.3:o:juniper:junos:22.2
-
cpe:2.3:o:juniper:junos:22.3
-
cpe:2.3:o:juniper:junos:22.4