Product:

Eos

(Arista)
Repositories https://github.com/torvalds/linux
#Vulnerabilities 44
Date Id Summary Products Score Patch Annotated
2020-01-23 CVE-2015-5278 The ne2000_receive function in hw/net/ne2000.c in QEMU before 2.4.0.1 allows attackers to cause a denial of service (infinite loop and instance crash) or possibly execute arbitrary code via vectors related to receiving packets. Eos, Ubuntu_linux, Fedora, Qemu 6.5
2020-04-16 CVE-2019-18948 An issue was found in Arista EOS. Specific malformed ARP packets can impact the software forwarding of VxLAN packets. This issue is found in Arista’s EOS VxLAN code, which can allow attackers to crash the VxlanSwFwd agent. This affects EOS 4.21.8M and below releases in the 4.21.x train, 4.22.3M and below releases in the 4.22.x train, 4.23.1F and below releases in the 4.23.x train, and all releases in 4.15, 4.16, 4.17, 4.18, 4.19, 4.20 code train. Eos 7.5
2019-08-15 CVE-2018-14008 Arista EOS through 4.21.0F allows a crash because 802.1x authentication is mishandled. Eos 6.5
2018-03-05 CVE-2018-5255 The Mlag agent in Arista EOS 4.19 before 4.19.4M and 4.20 before 4.20.2F allows remote attackers to cause a denial of service (agent restart) via crafted UDP packets. Eos 6.5
2018-04-12 CVE-2018-5254 Arista EOS before 4.20.2F allows remote BGP peers to cause a denial of service (Rib agent restart) via a malformed path attribute in an UPDATE message. Eos 7.5
2015-11-19 CVE-2015-8236 Arista EOS before 4.11.12, 4.12 before 4.12.11, 4.13 before 4.13.14M, 4.14 before 4.14.5FX.5, and 4.15 before 4.15.0FX1.1 allows remote attackers to execute arbitrary code as root by leveraging management-plane access, aka Bug 138716. Eos N/A