CVE-2024-27892

Affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected. This can result in unexpected configuration being applied to the switch.
Configurations

No configuration.

History

22 Jul 2026, 20:10

Type Values Removed Values Added
Summary
  • (es) Plataformas afectadas que ejecutan Arista EOS con OpenConfig configurado, una solicitud gNMI Set puede ejecutarse cuando debería haber sido rechazada. Esto puede resultar en que se aplique una configuración inesperada al switch.

04 Jun 2026, 23:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-06-04 23:16

Updated : 2026-07-22 20:10


NVD link : CVE-2024-27892

Mitre link : CVE-2024-27892

CVE.ORG link : CVE-2024-27892


JSON object : View

Products Affected

No product.

CWE
CWE-306

Missing Authentication for Critical Function