CVE-2023-24548
Summary
| CVE | CVE-2023-24548 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-08-29 17:15:00 UTC |
| Updated | 2023-09-05 18:52:00 UTC |
| Description | On affected platforms running Arista EOS with VXLAN configured, malformed or truncated packets received over a VXLAN tunnel and forwarded in hardware can cause egress ports to be unable to forward packets. The device will continue to be susceptible to the issue until remediation is in place. |
Risk And Classification
Problem Types: CWE-120
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Arista | 7280cr3-32d4 | - | All | All | All |
| Hardware | Arista | 7280cr3-32p4 | - | All | All | All |
| Hardware | Arista | 7280cr3-36s | - | All | All | All |
| Hardware | Arista | 7280cr3-96 | - | All | All | All |
| Hardware | Arista | 7280cr3a-24d12 | - | All | All | All |
| Hardware | Arista | 7280cr3a-48d6 | - | All | All | All |
| Hardware | Arista | 7280cr3a-72 | - | All | All | All |
| Hardware | Arista | 7280dr3-24 | - | All | All | All |
| Hardware | Arista | 7280dr3a-36 | - | All | All | All |
| Hardware | Arista | 7280dr3a-54 | - | All | All | All |
| Hardware | Arista | 7280dr3ak-36 | - | All | All | All |
| Hardware | Arista | 7280dr3ak-54 | - | All | All | All |
| Hardware | Arista | 7280dr3am-36 | - | All | All | All |
| Hardware | Arista | 7280dr3am-54 | - | All | All | All |
| Hardware | Arista | 7280pr3-24 | - | All | All | All |
| Hardware | Arista | 7280r3 | - | All | All | All |
| Hardware | Arista | 7280sr3-40yc6 | - | All | All | All |
| Hardware | Arista | 7280sr3-48yc8 | - | All | All | All |
| Hardware | Arista | 7280tr3-40c6 | - | All | All | All |
| Hardware | Arista | 7500r3-24d | - | All | All | All |
| Hardware | Arista | 7500r3-24p | - | All | All | All |
| Hardware | Arista | 7500r3-36cq | - | All | All | All |
| Hardware | Arista | 7500r3k-36cq | - | All | All | All |
| Hardware | Arista | 7500r3k-48y4d | - | All | All | All |
| Hardware | Arista | 7504r3 | - | All | All | All |
| Hardware | Arista | 7508r3 | - | All | All | All |
| Hardware | Arista | 7512r3 | - | All | All | All |
| Hardware | Arista | 7800r3-36d | - | All | All | All |
| Hardware | Arista | 7800r3-36p | - | All | All | All |
| Hardware | Arista | 7800r3-48cq | - | All | All | All |
| Hardware | Arista | 7800r3a-36d | - | All | All | All |
| Hardware | Arista | 7800r3a-36dm | - | All | All | All |
| Hardware | Arista | 7800r3a-36p | - | All | All | All |
| Hardware | Arista | 7800r3a-36pm | - | All | All | All |
| Hardware | Arista | 7800r3ak-36dm | - | All | All | All |
| Hardware | Arista | 7800r3ak-36pm | - | All | All | All |
| Hardware | Arista | 7800r3k-36dm | - | All | All | All |
| Hardware | Arista | 7800r3k-48cq | - | All | All | All |
| Hardware | Arista | 7800r3k-48cqms | - | All | All | All |
| Hardware | Arista | 7800r3k-72y7512r3 | - | All | All | All |
| Hardware | Arista | 7808r3 | - | All | All | All |
| Hardware | Arista | 7812r3 | - | All | All | All |
| Hardware | Arista | 7816r3 | - | All | All | All |
| Operating System | Arista | Eos | 4.25.0f | All | All | All |
| Operating System | Arista | Eos | All | All | All | All |
| Operating System | Arista | Eos | All | All | All | All |
| Operating System | Arista | Eos | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Security Advisory 0089 - Arista | MISC | www.arista.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 44109 Arista EOS Buffer Copy Without Checking Size of Input Vulnerability (SA0089)