CVE-2024-30388

CVSS v3 Score
6.5
Medium

Vulnerability Description

An Improper Isolation or Compartmentalization vulnerability in the Packet Forwarding Engine (pfe) of Juniper Networks Junos OS on QFX5000 Series and EX Series allows an unauthenticated, adjacent attacker to cause a Denial of Service (DoS). If a specific malformed LACP packet is received by a QFX5000 Series, or an EX4400, EX4100 or EX4650 Series device, an LACP flap will occur resulting in traffic loss. This issue affects Junos OS on QFX5000 Series, and on EX4400, EX4100 or EX4650 Series: * 20.4 versions from 20.4R3-S4 before 20.4R3-S8, * 21.2 versions from 21.2R3-S2 before 21.2R3-S6, * 21.4 versions from 21.4R2 before 21.4R3-S4, * 22.1 versions from 22.1R2 before 22.1R3-S3, * 22.2 versions before 22.2R3-S1, * 22.3 versions before 22.3R2-S2, 22.3R3, * 22.4 versions before 22.4R2-S1, 22.4R3.

CVSS:6.5(Medium)

lunasvg v3.0.1 was discovered to contain a segmentation violation via the component gray_find_cell

CVSS:6.5(Medium)

lunasvg v3.0.0 was discovered to contain a segmentation violation via the component plutovg_blend.

CVSS:6.5(Medium)

lunasvg v3.0.0 was discovered to contain a segmentation violation via the component plutovg_path_add_path.

CVSS:6.5(Medium)

lunasvg v3.0.0 was discovered to contain a segmentation violation via the component composition_source_over.

CVSS:6.5(Medium)

Improper isolation or compartmentalization in Azure PromptFlow allows an unauthorized attacker to execute code over a network.

CVSS:5.5(Medium)

yasm 1.3.0.55.g101bc was discovered to contain a segmentation violation via the component yasm_expr_create at /libyasm/expr.c.