In Arista EOS malformed packets can be incorrectly forwarded across VLAN boundaries in one direction. This vulnerability is only susceptible to exploitation by unidirectional traffic (ex. UDP) and not bidirectional traffic (ex. TCP). This affects: EOS 7170 platforms version 4.21.4.1F and below releases in the 4.21.x train; EOS X-Series versions 4.21.11M and below releases in the 4.21.x train; 4.22.6M and below releases in the 4.22.x train; 4.23.4M and below releases in the 4.23.x train; 4.24.2.1F and below releases in the 4.24.x train.
References
Link | Resource |
---|---|
https://www.arista.com/en/support/advisories-notices/security-advisories/11996-security-advisory-56 | Exploit Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-12-28T18:16:58
Updated: 2020-12-28T18:16:58
Reserved: 2020-07-22T00:00:00
Link: CVE-2020-15898
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-12-28T19:15:12.783
Modified: 2021-01-04T20:30:52.173
Link: CVE-2020-15898
JSON object: View
Redhat Information
No data.
CWE