Lucene search

K

7280cr3-32d4 Security Vulnerabilities

cve
cve

CVE-2023-3646

On affected platforms running Arista EOS with mirroring to multiple destinations configured, an internal system error may trigger a kernel panic and cause system...

7.5CVSS

7.3AI Score

0.0005EPSS

2023-08-29 05:15 PM
40
cve
cve

CVE-2023-24548

On affected platforms running Arista EOS with VXLAN configured, malformed or truncated packets received over a VXLAN tunnel and forwarded in hardware can cause egress ports to be unable to forward packets. The device will continue to be susceptible to the issue until remediation is in...

6.5CVSS

6.4AI Score

0.0004EPSS

2023-08-29 05:15 PM
44
cve
cve

CVE-2023-24512

On affected platforms running Arista EOS, an authorized attacker with permissions to perform gNMI requests could craft a request allowing it to update arbitrary configurations in the switch. This situation occurs only when the Streaming Telemetry Agent (referred to as the TerminAttr agent) is...

8.8CVSS

6.4AI Score

0.001EPSS

2023-04-25 09:15 PM
24
cve
cve

CVE-2023-24511

On affected platforms running Arista EOS with SNMP configured, a specially crafted packet can cause a memory leak in the snmpd process. This may result in the snmpd processing being terminated (causing SNMP requests to time out until snmpd is automatically restarted) and potential memory resource.....

7.5CVSS

7.4AI Score

0.001EPSS

2023-04-12 09:15 PM
230
2
cve
cve

CVE-2021-28508

This advisory documents the impact of an internally found vulnerability in Arista EOS state streaming telemetry agent TerminAttr and OpenConfig transport protocols. The impact of this vulnerability is that, in certain conditions, TerminAttr might leak IPsec sensitive data in clear text in CVP to...

6.8CVSS

6.1AI Score

0.001EPSS

2022-05-26 08:15 PM
27
2
cve
cve

CVE-2021-28509

This advisory documents the impact of an internally found vulnerability in Arista EOS state streaming telemetry agent TerminAttr and OpenConfig transport protocols. The impact of this vulnerability is that, in certain conditions, TerminAttr might leak MACsec sensitive data in clear text in CVP to.....

6.1CVSS

6.1AI Score

0.001EPSS

2022-05-26 08:15 PM
27
2
cve
cve

CVE-2020-24360

An issue with ARP packets in Aristaโ€™s EOS affecting the 7800R3, 7500R3, and 7280R3 series of products may result in issues that cause a kernel crash, followed by a device reload. The affected Arista EOS versions are: 4.24.2.4F and below releases in the 4.24.x train; 4.23.4M and below releases in...

7.4CVSS

7.3AI Score

0.001EPSS

2020-12-28 07:15 PM
53