CVE-2020-24360
An issue with ARP packets in Arista’s EOS affecting the 7800R3, 7500R3, and 7280R3 series of products may result in issues that cause a kernel crash, followed by a device reload. The affected Arista EOS versions are: 4.24.2.4F and below releases in the 4.24.x train; 4.23.4M and below releases in the 4.23.x train; 4.22.6M and below releases in the 4.22.x train.
Published:Dec 28, 2020
Last Modified:Nov 21, 2024
EPS:Dec 28, 2020
EPSS Score:0.00101
CVSS Score:7.4
Affected Products
Vendor
Product
Action
Vendor
Arista
Product
7280cr2ak-30
Arista
7280cr2ak-30
Vendor
Arista
Product
7280cr2k-60
Arista
7280cr2k-60
Vendor
Arista
Product
7280cr3-32d4
Arista
7280cr3-32d4
Vendor
Arista
Product
7280cr3-32p4
Arista
7280cr3-32p4
Vendor
Arista
Product
7280cr3-96
Arista
7280cr3-96
Vendor
Arista
Product
7280cr3k-32d4
Arista
7280cr3k-32d4
Vendor
Arista
Product
7280cr3k-32p4
Arista
7280cr3k-32p4
Vendor
Arista
Product
7280cr3k-96
Arista
7280cr3k-96
Vendor
Arista
Product
7280dr3-24
Arista
7280dr3-24
Vendor
Arista
Product
7280dr3k-24
Arista
7280dr3k-24
Vendor
Arista
Product
7280pr3-24
Arista
7280pr3-24
Vendor
Arista
Product
7280pr3k-24
Arista
7280pr3k-24
Vendor
Arista
Product
7280sr3-48yc8
Arista
7280sr3-48yc8
Vendor
Arista
Product
7280sr3k-48yc8
Arista
7280sr3k-48yc8
Vendor
Arista
Product
7500r3-24d
Arista
7500r3-24d
Vendor
Arista
Product
7500r3-24p
Arista
7500r3-24p
Vendor
Arista
Product
7500r3-36cq
Arista
7500r3-36cq
Vendor
Arista
Product
7500r3k-36cq
Arista
7500r3k-36cq
Vendor
Arista
Product
7504r3
Arista
7504r3
Vendor
Arista
Product
7508r3
Arista
7508r3
Vendor
Arista
Product
7512r3
Arista
7512r3
Vendor
Arista
Product
7800r3-36p
Arista
7800r3-36p
Vendor
Arista
Product
7800r3-48cq
Arista
7800r3-48cq
Vendor
Arista
Product
7800r3k-48cq
Arista
7800r3k-48cq
Vendor
Arista
Product
7804r3
Arista
7804r3
Vendor
Arista
Product
7808r3
Arista
7808r3
Vendor
Arista
Product
Eos
Arista
Eos
Exploits
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
Related CVEs
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
