CVE-2024-9135

CWE-401Memory Leak3 documents3 sources
Severity
5.3MEDIUM
EPSS
0.2%
top 57.66%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 4

Description

On affected platforms running Arista EOS with BGP Link State configured, BGP peer flap can cause the BGP agent to leak memory. This may result in BGP routing processing being terminated and route flapping.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:LExploitability: 3.9 | Impact: 1.4

Affected Packages1 packages

CVEListV5arista_networks/eos4.31.04.31.5+5

🔴Vulnerability Details

2
CVEList
On affected platforms running Arista EOS with BGP Link State configured, BGP peer flap can cause the BGP agent to leak memory. This may result in BGP routing processing being terminated and route flap2025-03-04
GHSA
GHSA-wqvf-m58c-h7rw: On affected platforms running Arista EOS with BGP Link State configured, BGP peer flap can cause the BGP agent to leak memory2025-03-04
CVE-2024-9135 (MEDIUM CVSS 5.3) | On affected platforms running Arist | cvebase.io