cbcvebase.

Arista Networks Eos vulnerabilities

76 known vulnerabilities affecting arista_networks/eos.

Total CVEs
76
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL8HIGH22MEDIUM39LOW7

Vulnerabilities

Page 2 of 4
CVE-2025-1259P3HIGHCVSS 7.7≥ 4.33.0, ≤ 4.33.1≥ 4.32.0, ≤ 4.32.3+4 more2025-03-04
CVE-2025-1259 [HIGH] CWE-284 CVE-2025-1259: On affected platforms running Arista EOS with OpenConfig configured, a gNOI request can be run when On affected platforms running Arista EOS with OpenConfig configured, a gNOI request can be run when it should have been rejected. This issue can result in users retrieving data that should not have been available
nvd
CVE-2026-2380P3HIGHCVSS 7.4≥ 4.36.0F, ≤ 4.36.1F≥ 4.35.0F, < 4.36.0F+3 more2026-09-16
CVE-2026-2380 [HIGH] CWE-256 CVE-2026-2380: On affected platforms running Arista EOS with OpenConfig-related services (i.e., gNMI, gNSI, RESTCON On affected platforms running Arista EOS with OpenConfig-related services (i.e., gNMI, gNSI, RESTCONF and NETCONF), sensitive requests and responses may be unintentionally logged. These may be stored on the local EOS device or recorded on remote accounting servers. Note that gRPC-based streaming via Streaming Telemetry Agent to CloudVision is not affect
nvd
CVE-2026-73446P3HIGHCVSS 7.4≥ 4.36.0, ≤ 4.36.1F≥ 4.35.0, ≤ 4.35.5M+4 more2026-09-16
CVE-2026-73446 [HIGH] CWE-696 CVE-2026-73446: On affected platforms running Arista EOS with IS-IS configured on a broadcast interface, an unauthen On affected platforms running Arista EOS with IS-IS configured on a broadcast interface, an unauthenticated attacker can send a crafted IS-IS Hello Protocol Data Unit (PDU) that causes the device to tear down an established IS-IS adjacency. This may result in traffic disruption and loss of IP reachability for prefixes advertised through that adjacency
nvd
CVE-2023-24511P3HIGHCVSS 7.5v4.28.0 4.28.5.1Mv4.27.0 4.27.8.1M+4 more2023-04-12
CVE-2023-24511 [HIGH] CWE-401 CVE-2023-24511: On affected platforms running Arista EOS with SNMP configured, a specially crafted packet can cause On affected platforms running Arista EOS with SNMP configured, a specially crafted packet can cause a memory leak in the snmpd process. This may result in the snmpd processing being terminated (causing SNMP requests to time out until snmpd is automatically restarted) and potential memory resource exhaustion for other processes on the switch. The vulner
nvd
CVE-2021-28504P3HIGHCVSS 7.5≥ 4.26.3F, ≤ 4.26.0≥ 4.27.0F, ≤ 4.27.02022-04-01
CVE-2021-28504 [HIGH] CWE-284 CVE-2021-28504: On Arista Strata family products which have “TCAM profile” feature enabled when Port IPv4 access-lis On Arista Strata family products which have “TCAM profile” feature enabled when Port IPv4 access-list has a rule which matches on “vxlan” as protocol then that rule and subsequent rules ( rules declared after it in ACL ) do not match on IP protocol field as expected.
nvd
CVE-2026-73459P3HIGHCVSS 7.4≥ 4.36.0, ≤ 4.36.1F2026-09-16
CVE-2026-73459 [HIGH] CWE-354 CVE-2026-73459: On affected platforms running Arista EOS with IS-IS configured, an unauthenticated attacker who can On affected platforms running Arista EOS with IS-IS configured, an unauthenticated attacker who can inject a specially crafted IS-IS LSP PDU can cause the legitimate LSP to be unexpectedly purged from the IS-IS link-state database. This may result in traffic loss.
nvd
CVE-2025-0936P3MEDIUMCVSS 6.5≥ 4.33.0, ≤ 4.33.1≥ 4.32.0, ≤ 4.32.3M+2 more2025-05-07
CVE-2025-0936 [MEDIUM] CWE-256 CVE-2025-0936: On affected platforms running Arista EOS with a gNMI transport enabled, running the gNOI File Transf On affected platforms running Arista EOS with a gNMI transport enabled, running the gNOI File TransferToRemote RPC with credentials for a remote server may cause these remote-server credentials to be logged or accounted on the local EOS device or possibly on other remote accounting servers (i.e. TACACS, RADIUS, etc).
nvd
CVE-2023-5502P3MEDIUMCVSS 5.9≥ 4.31.0, ≤ 4.31.0F≥ 4.30.0, ≤ 4.30.4M+6 more2026-06-04
CVE-2023-5502 [MEDIUM] CWE-287 CVE-2023-5502: On affected platforms running Arista EOS with 802.1x authentication configured on the access/trunk p On affected platforms running Arista EOS with 802.1x authentication configured on the access/trunk ports, and routing enabled on the access VLAN of the ports, a malicious supplicant may be able to bypass the requirement to perform 802.1x authentication.
nvd
CVE-2021-28510P3HIGHCVSS 7.5v4.22≥ 4.27.1, ≤ 4.27.0+4 more2023-01-26
CVE-2021-28510 [HIGH] CWE-400 CVE-2021-28510: For certain systems running EOS, a Precision Time Protocol (PTP) packet of a management/signaling me For certain systems running EOS, a Precision Time Protocol (PTP) packet of a management/signaling message with an invalid Type-Length-Value (TLV) causes the PTP agent to restart. Repeated restarts of the service will make the service unavailable.
nvd
CVE-2023-24545P3HIGHCVSS 7.5≥ 4.29.0, ≤ 4.29.1F≥ 4.28.0, ≤ 4.28.4M+2 more2023-04-12
CVE-2023-24545 [HIGH] CWE-400 CVE-2023-24545: On affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe) can l On affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe) can lead to a potential denial of service attack by sending malformed packets to the switch. This causes a leak of packet buffers and if enough malformed packets are received, the switch may eventually stop forwarding traffic.
nvd
CVE-2023-24513P3HIGHCVSS 7.5≥ 4.29.0, ≤ 4.29.1F≥ 4.28.0, ≤ 4.28.5M+2 more2023-04-12
CVE-2023-24513 [HIGH] CWE-126 CVE-2023-24513: On affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe) can l On affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe) can lead to a potential denial of service attack by sending malformed packets to the switch. This causes a leak of packet buffers and if enough malformed packets are received, the switch may eventually stop forwarding traffic.
nvd
CVE-2023-3646P3HIGHCVSS 7.5≥ 4.28.2F, ≤ 4.28.5.1M ≥ 4.29.0, ≤ 4.29.1F2023-08-29
CVE-2023-3646 [HIGH] CWE-125 CVE-2023-3646: On affected platforms running Arista EOS with mirroring to multiple destinations configured, an inte On affected platforms running Arista EOS with mirroring to multiple destinations configured, an internal system error may trigger a kernel panic and cause system reload.
nvd
CVE-2025-8872P3MEDIUMCVSS 6.5≥ 4.34.0, ≤ 4.34.1F≥ 4.33.0, ≤ 4.33.4M+3 more2025-12-16
CVE-2025-8872 [MEDIUM] CWE-400 CVE-2025-8872: On affected platforms running Arista EOS with OSPFv3 configured, a specially crafted packet can caus On affected platforms running Arista EOS with OSPFv3 configured, a specially crafted packet can cause the OSFPv3 process to have high CPU utilization which may result in the OSFPv3 process being restarted. This may cause disruption in the OSFPv3 routes on the switch. This issue was discovered internally by Arista and is not aware of any malicious use
nvd
CVE-2026-73449P3MEDIUMCVSS 5.9≥ 4.36.0, ≤ 4.36.1F≥ 4.35.0, ≤ 4.35.5M+1 more2026-09-14
CVE-2026-73449 [MEDIUM] CWE-290 CVE-2026-73449: On affected platforms running Arista EOS with both 802.1X port authentication and the RADIUS proxy f On affected platforms running Arista EOS with both 802.1X port authentication and the RADIUS proxy feature configured with dynamic authorization, a low-privileged attacker on an adjacent network segment who induces a RADIUS packet through a configured RADIUS proxy client can prevent RADIUS dynamic authorization messages, including Change-of-Authoriz
nvd
CVE-2026-73450P3MEDIUMCVSS 6.9≥ 4.36.0, ≤ 4.36.1F≥ 4.35.0, ≤ 4.35.5M+3 more2026-09-16
CVE-2026-73450 [MEDIUM] CWE-345 CVE-2026-73450: On affected platforms running Arista EOS with MLAG Dual Primary Detection configured, an unauthentic On affected platforms running Arista EOS with MLAG Dual Primary Detection configured, an unauthenticated attacker with access to the Dual Primary Detection network segment can send specially crafted packets to interfere with the dual-primary state. If the MLAG primary switch fails while these packets are present, the secondary switch incorrectly con
nvd
CVE-2024-5872P4MEDIUMCVSS 6.5≥ 4.32.0F, ≤ 4.32.2F≥ 4.31.0M, ≤ 4.31.4M+3 more2025-01-10
CVE-2024-5872 [MEDIUM] CVE-2024-5872: On affected platforms running Arista EOS, a specially crafted packet with incorrect VLAN tag might b On affected platforms running Arista EOS, a specially crafted packet with incorrect VLAN tag might be copied to CPU, which may cause incorrect control plane behavior related to the packet, such as route flaps, multicast routes learnt, etc.
nvd
CVE-2026-19641P4MEDIUMCVSS 5.3≥ 4.36.0, ≤ 4.36.0F≥ 4.35.0, ≤ 4.35.5M+2 more2026-09-15
CVE-2026-19641 [MEDIUM] CWE-116 CVE-2026-19641: On affected platforms running Arista EOS with password authentication configured, a specially crafte On affected platforms running Arista EOS with password authentication configured, a specially crafted password can create orphan authentication sessions. Repeated exploitation of this issue can exhaust available authentication resources, resulting in legitimate users being unable to log in to the device. This issue was discovered internally by Aris
nvd
CVE-2021-28507P4HIGHCVSS 7.1v4.22.x≥ 4.26.2F, ≤ 4.26.0+6 more2022-01-14
CVE-2021-28507 [HIGH] CWE-284 CVE-2021-28507: An issue has recently been discovered in Arista EOS where, under certain conditions, the service ACL An issue has recently been discovered in Arista EOS where, under certain conditions, the service ACL configured for OpenConfig gNOI and OpenConfig RESTCONF might be bypassed, which results in the denied requests being forwarded to the agent.
nvd
CVE-2021-28511P4MEDIUMCVSS 6.5≥ 4.24.0, ≤ 4.24.9≥ 4.25.0, ≤ 4.25.8+2 more2022-08-05
CVE-2021-28511 [MEDIUM] CWE-284 CVE-2021-28511: This advisory documents the impact of an internally found vulnerability in Arista EOS for security A This advisory documents the impact of an internally found vulnerability in Arista EOS for security ACL bypass. The impact of this vulnerability is that the security ACL drop rule might be bypassed if a NAT ACL rule filter with permit action matches the packet flow. This could allow a host with an IP address in a range that matches the range allowed
nvd
CVE-2026-73462P4MEDIUMCVSS 6.5≥ 4.36.0, ≤ 4.36.1F≥ 4.35.0, ≤ 4.35.5M+2 more2026-09-16
CVE-2026-73462 [MEDIUM] CWE-125 CVE-2026-73462: On affected platforms running Arista EOS with IGMP (Internet Group Management Protocol) snooping con On affected platforms running Arista EOS with IGMP (Internet Group Management Protocol) snooping configured (enabled by default on all VLANs), a network-adjacent unauthenticated attacker can send malformed network packets on an affected VLAN to cause the IGMP snooping agent to terminate unexpectedly. This results in a temporary disruption of multica
nvd
Arista Networks Eos vulnerabilities | cvebase