CVE-2020-26569

In EVPN VxLAN setups in Arista EOS, specific malformed packets can lead to incorrect MAC to IP bindings and as a result packets can be incorrectly forwarded across VLAN boundaries. This can result in traffic being discarded on the receiving VLAN. This affects versions: 4.21.12M and below releases in the 4.21.x train; 4.22.7M and below releases in the 4.22.x train; 4.23.5M and below releases in the 4.23.x train; 4.24.2F and below releases in the 4.24.x train.
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:o:arista:eos:*:*:*:*:*:*:*:*
cpe:2.3:o:arista:eos:*:*:*:*:*:*:*:*
cpe:2.3:o:arista:eos:*:*:*:*:*:*:*:*
cpe:2.3:o:arista:eos:*:*:*:*:*:*:*:*
OR cpe:2.3:h:arista:7010t-48:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050cx3-32s:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050cx3m-32s:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050qx-32s:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050qx2-32s:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050sx-128:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050sx-64:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050sx-72q:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050sx2-128:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050sx2-72q:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050sx3-48c8:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050sx3-48yc:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050sx3-48yc12:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050sx3-48yc8:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050sx3-96yc8:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050tx-48:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050tx-64:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050tx-72q:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050tx2-128:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7050tx3-48c8:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7060cx-32s:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7060cx2-32s:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7060dx4-32:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7060px4-32:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7060sx2-48yc6:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:720xp-24y6:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:720xp-24zy4:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:720xp-48y6:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:720xp-48zc2:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:720xp-96zc2:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7250qx-64:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7260cx:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7260cx3:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7260cx3-64:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7260qx:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7300x-32q:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7300x-64s:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7300x-64t:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7300x3-32c:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7300x3-48yc4:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7304x3:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7308x3:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7320x-32c:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7324x:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7328x:-:*:*:*:*:*:*:*
cpe:2.3:h:arista:7368x4:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2020-12-28 16:15

Updated : 2024-02-28 18:08


NVD link : CVE-2020-26569

Mitre link : CVE-2020-26569

CVE.ORG link : CVE-2020-26569


JSON object : View

Products Affected

arista

  • 7304x3
  • 7050sx2-72q
  • 7050sx-72q
  • 7050tx3-48c8
  • 7050qx2-32s
  • 7050tx-48
  • 7050tx2-128
  • 7300x3-48yc4
  • 7050sx2-128
  • 7060px4-32
  • 7050tx-64
  • 720xp-48y6
  • 7060cx2-32s
  • 7260qx
  • 7050sx-64
  • 7328x
  • 7368x4
  • 720xp-24y6
  • 7050qx-32s
  • 7050sx3-48c8
  • 7260cx3-64
  • 7260cx3
  • 7050tx-72q
  • 720xp-96zc2
  • 7300x3-32c
  • 7250qx-64
  • 7050cx3-32s
  • 7060sx2-48yc6
  • 7050sx3-96yc8
  • 7010t-48
  • eos
  • 7308x3
  • 7050sx-128
  • 720xp-48zc2
  • 7060dx4-32
  • 7300x-64t
  • 7050sx3-48yc
  • 7300x-32q
  • 7320x-32c
  • 7260cx
  • 7050sx3-48yc12
  • 7300x-64s
  • 720xp-24zy4
  • 7324x
  • 7050cx3m-32s
  • 7050sx3-48yc8
  • 7060cx-32s