On Arista Strata family products which have “TCAM profile” feature enabled when Port IPv4 access-list has a rule which matches on “vxlan” as protocol then that rule and subsequent rules ( rules declared after it in ACL ) do not match on IP protocol field as expected.
References
Link | Resource |
---|---|
https://www.arista.com/en/support/advisories-notices/security-advisories/15267-security-advisory-0073 | Mitigation Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
No history.
Information
Published : 2022-04-01 23:15
Updated : 2024-02-28 19:09
NVD link : CVE-2021-28504
Mitre link : CVE-2021-28504
CVE.ORG link : CVE-2021-28504
JSON object : View
Products Affected
arista
- eos
- ccs-720xp-48y6
- ccs-720xp-48zc2
- ccs-722xpm-48zy8
- dcs-7050cx3-32s
- dcs-7050sx3-48yc12
- dcs-7050tx3-48c8
- ccs-710p-12
- ccs-710p-16p
- ccs-722xpm-48y4
- dcs-7050cx3m-32s
- dcs-7050sx3-96yc8
- ccs-720xp-24y6
- dcs-7010tx-48
- ccs-720xp-24zy4
- dcs-7050sx3-48c8
- dcs-7050sx3-48yc8
- ccs-720xp-96zc2