Vulnerabilities (CVE)

Filtered by vendor Arista Subscribe
Filtered by product 7800r3ak-36dm
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2026-7473 1 Arista 102 7020sr-24c2, 7020sr-32c2, 7020srg-24c2 and 99 more 2026-06-09 N/A 5.8 MEDIUM
On affected platforms running Arista EOS where a tunnel decapsulation configuration—such as VXLAN (Virtual Extensible LAN), decap-groups, or a GRE (Generic Routing Encapsulation) tunnel interface—is present, the switch will incorrectly decapsulate and forward other unexpected tunneled packet with a destination IP matching its configured decapsulation IP. This occurs because the switch does not verify the tunnel protocol type, potentially leading to the unexpected processing of non-configured tunnel traffic. This issue has been reported as being exploited in the wild.
CVE-2023-3646 1 Arista 47 7280cr3-32d4, 7280cr3-32p4, 7280cr3-36s and 44 more 2024-11-21 N/A 5.9 MEDIUM
On affected platforms running Arista EOS with mirroring to multiple destinations configured, an internal system error may trigger a kernel panic and cause system reload.
CVE-2023-24548 1 Arista 44 7280cr3-32d4, 7280cr3-32p4, 7280cr3-36s and 41 more 2024-11-21 N/A 5.3 MEDIUM
On affected platforms running Arista EOS with VXLAN configured, malformed or truncated packets received over a VXLAN tunnel and forwarded in hardware can cause egress ports to be unable to forward packets. The device will continue to be susceptible to the issue until remediation is in place.