Vulnerabilities > Arista > EOS > 4.22.6m

DATE CVE VULNERABILITY TITLE RISK
2020-12-28 CVE-2020-24360 Improper Resource Shutdown or Release vulnerability in Arista EOS
An issue with ARP packets in Arista’s EOS affecting the 7800R3, 7500R3, and 7280R3 series of products may result in issues that cause a kernel crash, followed by a device reload.
low complexity
arista CWE-404
7.4
2020-12-28 CVE-2020-15898 Unspecified vulnerability in Arista EOS
In Arista EOS malformed packets can be incorrectly forwarded across VLAN boundaries in one direction.
network
low complexity
arista
5.3
2020-12-28 CVE-2020-26569 Unspecified vulnerability in Arista EOS
In EVPN VxLAN setups in Arista EOS, specific malformed packets can lead to incorrect MAC to IP bindings and as a result packets can be incorrectly forwarded across VLAN boundaries.
network
high complexity
arista
5.9
2020-10-26 CVE-2020-15897 Unspecified vulnerability in Arista EOS
Arista EOS before 4.21.12M, 4.22.x before 4.22.7M, 4.23.x before 4.23.5M, and 4.24.x before 4.24.2F allows remote attackers to cause traffic loss or incorrect forwarding of traffic via a malformed link-state PDU to the IS-IS router.
network
low complexity
arista
7.5
2020-10-21 CVE-2020-17355 Unspecified vulnerability in Arista EOS
Arista EOS before 4.21.12M, 4.22.x before 4.22.7M, 4.23.x before 4.23.5M, and 4.24.x before 4.24.2F allows remote attackers to cause a denial of service (restart of agents) by crafting a malformed DHCP packet which leads to an incorrect route being installed.
network
low complexity
arista
7.5
2019-10-24 CVE-2019-17596 Interpretation Conflict vulnerability in multiple products
Go before 1.12.11 and 1.3.x before 1.13.2 can panic upon an attempt to process network traffic containing an invalid DSA public key.
7.5