QID 43999
Date Published: 2023-03-27
QID 43999: Arista EOS VXLAN rule Vulnerability (SA0073)
Arista EOS is the Worlds Most Advanced Network Operating System.
Arista EOS is a fully programmable and highly modular, Linux-based network operation system, using familiar industry-standard CLI, and runs a single binary software image across the Arista switching family.
On affected Arista EOS platforms, if a VXLAN match rule exists in an IPv4 access-list that is applied to the ingress of an L2 or an L3 port/SVI, the VXLAN rule and subsequent ACL rules in that access list will ignore the specified IP protocol.
Affected EOS versions:
4.26.3M and below releases in the 4.26.x train
4.27.0F in the 4.27.x train
QID Detection Logic (Authenticated):
The check matches Arista EOS version retrieved via Unix Auth using "show version" command.
Successful exploitation could compromise confidentiality, integrity and availability
- 15267-security-advisory-0073 -
www.arista.com/en/support/advisories-notices/security-advisory/15267-security-advisory-0073
CVEs related to QID 43999
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| 15267-security-advisory-0073 |
|