In Arista EOS malformed packets can be incorrectly forwarded across VLAN boundaries in one direction. This vulnerability is only susceptible to exploitation by unidirectional traffic (ex. UDP) and not bidirectional traffic (ex. TCP). This affects: EOS 7170 platforms version 4.21.4.1F and below releases in the 4.21.x train; EOS X-Series versions 4.21.11M and below releases in the 4.21.x train; 4.22.6M and below releases in the 4.22.x train; 4.23.4M and below releases in the 4.23.x train; 4.24.2.1F and below releases in the 4.24.x train.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Arista
Subscribe
|
7050cx3-32s
Subscribe
7050cx3m-32s
Subscribe
7050qx-32s
Subscribe
7050qx2-32s
Subscribe
7050sx-128
Subscribe
7050sx-64
Subscribe
7050sx-72q
Subscribe
7050sx2-128
Subscribe
7050sx2-72q
Subscribe
7050sx3-48c8
Subscribe
7050sx3-48yc
Subscribe
7050sx3-48yc12
Subscribe
7050sx3-48yc8
Subscribe
7050sx3-96yc8
Subscribe
7050tx-48
Subscribe
7050tx-64
Subscribe
7050tx-72q
Subscribe
7050tx2-128
Subscribe
7050tx3-48c8
Subscribe
7060cx-32s
Subscribe
7060cx2-32s
Subscribe
7060dx4-32
Subscribe
7060px4-32
Subscribe
7060sx2-48yc6
Subscribe
7170-32c
Subscribe
7170-32cd
Subscribe
7170-64c
Subscribe
720xp-24y6
Subscribe
720xp-24zy4
Subscribe
720xp-48y6
Subscribe
720xp-48zc2
Subscribe
720xp-96zc2
Subscribe
7250qx-64
Subscribe
7260cx
Subscribe
7260cx3
Subscribe
7260cx3-64
Subscribe
7260qx
Subscribe
7300x-32q
Subscribe
7300x-64s
Subscribe
7300x-64t
Subscribe
7300x3-32c
Subscribe
7300x3-48yc4
Subscribe
7304x3
Subscribe
7308x3
Subscribe
7320x-32c
Subscribe
7324x
Subscribe
7328x
Subscribe
7368x4
Subscribe
Eos
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-7872 | In Arista EOS malformed packets can be incorrectly forwarded across VLAN boundaries in one direction. This vulnerability is only susceptible to exploitation by unidirectional traffic (ex. UDP) and not bidirectional traffic (ex. TCP). This affects: EOS 7170 platforms version 4.21.4.1F and below releases in the 4.21.x train; EOS X-Series versions 4.21.11M and below releases in the 4.21.x train; 4.22.6M and below releases in the 4.22.x train; 4.23.4M and below releases in the 4.23.x train; 4.24.2.1F and below releases in the 4.24.x train. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T13:30:23.273Z
Reserved: 2020-07-22T00:00:00
Link: CVE-2020-15898
No data.
Status : Modified
Published: 2020-12-28T19:15:12.783
Modified: 2024-11-21T05:06:24.367
Link: CVE-2020-15898
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD