On affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe) can lead to a potential denial of service attack by sending malformed packets to the switch. This causes a leak of packet buffers and if enough malformed packets are received, the switch may eventually stop forwarding traffic.
References
| Link | Resource |
|---|---|
| https://www.arista.com/en/support/advisories-notices/security-advisory/17240-security-advisory-0085 | Exploit Patch Vendor Advisory |
| https://www.arista.com/en/support/advisories-notices/security-advisory/17240-security-advisory-0085 | Exploit Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
21 Nov 2024, 07:48
| Type | Values Removed | Values Added |
|---|---|---|
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 6.5 |
| References | () https://www.arista.com/en/support/advisories-notices/security-advisory/17240-security-advisory-0085 - Exploit, Patch, Vendor Advisory |
24 Apr 2023, 16:00
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Arista
Microsoft Microsoft azure Marketplace Amazon Arista cloudeos Equinix Google google Cloud Platform Marketplace Equinix network Edge Amazon aws Marketplace Arista dca-200-veos |
|
| CWE | CWE-125 | |
| CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
| CPE | cpe:2.3:h:arista:dca-200-veos:-:*:*:*:*:*:*:* cpe:2.3:a:google:google_cloud_platform_marketplace:-:*:*:*:*:*:*:* cpe:2.3:a:amazon:aws_marketplace:-:*:*:*:*:*:*:* cpe:2.3:a:equinix:network_edge:-:*:*:*:*:*:*:* cpe:2.3:a:arista:cloudeos:*:*:*:*:*:*:*:* cpe:2.3:a:microsoft:azure_marketplace:-:*:*:*:*:*:*:* |
|
| References | (MISC) https://www.arista.com/en/support/advisories-notices/security-advisory/17240-security-advisory-0085 - Exploit, Patch, Vendor Advisory |
12 Apr 2023, 20:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2023-04-12 20:15
Updated : 2024-11-21 07:48
NVD link : CVE-2023-24513
Mitre link : CVE-2023-24513
CVE.ORG link : CVE-2023-24513
JSON object : View
Products Affected
microsoft
- azure_marketplace
amazon
- aws_marketplace
arista
- cloudeos
- dca-200-veos
- google_cloud_platform_marketplace
equinix
- network_edge
