CVE Feed

    Dashboard / CVE / CVE-2023-24513

    CVE-2023-24513

    On affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe) can lead to a potential denial of service attack by sending malformed packets to the switch. This causes a leak of packet buffers and if enough malformed packets are received, the switch may eventually stop forwarding traffic.

    Published:Apr 12, 2023
    Last Modified:Feb 7, 2025
    EPS:Apr 12, 2023
    EPSS Score:0.00107
    CVSS Score:6.5

    Affected Products

    Vendor
    Amazon
    Product
    Aws Marketplace
    Vendor
    Arista
    Product
    Cloudeos
    Vendor
    Arista
    Product
    Dca-200-veos
    Vendor
    Equinix
    Product
    Network Edge
    Vendor
    Google
    Product
    Google Cloud Platform Marketplace
    Vendor
    Microsoft
    Product
    Azure Marketplace

    Common Attack Pattern Enumeration and Classification (CAPEC)

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High