QID 43999

Date Published: 2023-03-27

QID 43999: Arista EOS VXLAN rule Vulnerability (SA0073)

Arista EOS is the Worlds Most Advanced Network Operating System.

Arista EOS is a fully programmable and highly modular, Linux-based network operation system, using familiar industry-standard CLI, and runs a single binary software image across the Arista switching family.

On affected Arista EOS platforms, if a VXLAN match rule exists in an IPv4 access-list that is applied to the ingress of an L2 or an L3 port/SVI, the VXLAN rule and subsequent ACL rules in that access list will ignore the specified IP protocol.

Affected EOS versions:
4.26.3M and below releases in the 4.26.x train
4.27.0F in the 4.27.x train
QID Detection Logic (Authenticated):
The check matches Arista EOS version retrieved via Unix Auth using "show version" command.

Successful exploitation could compromise confidentiality, integrity and availability

  • CVSS V3 rated as High - 7.5 severity.
  • CVSS V2 rated as Medium - 5 severity.
  • Solution
    Refer to Arista Security Advisory SA0073 for patch details.

    CVEs related to QID 43999

    Software Advisories
    Advisory ID Software Component Link
    15267-security-advisory-0073 URL Logo www.arista.com/en/support/advisories-notices/security-advisory/15267-security-advisory-0073