Vulnerability Details CVE-2020-26569
In EVPN VxLAN setups in Arista EOS, specific malformed packets can lead to incorrect MAC to IP bindings and as a result packets can be incorrectly forwarded across VLAN boundaries. This can result in traffic being discarded on the receiving VLAN. This affects versions: 4.21.12M and below releases in the 4.21.x train; 4.22.7M and below releases in the 4.22.x train; 4.23.5M and below releases in the 4.23.x train; 4.24.2F and below releases in the 4.24.x train.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 59.2%
CVSS Severity
CVSS v3 Score 5.9
CVSS v2 Score 4.3
Products affected by CVE-2020-26569
-
cpe:2.3:h:arista:7010t-48:-
-
cpe:2.3:h:arista:7050cx3-32s:-
-
cpe:2.3:h:arista:7050cx3m-32s:-
-
cpe:2.3:h:arista:7050qx-32s:-
-
cpe:2.3:h:arista:7050qx2-32s:-
-
cpe:2.3:h:arista:7050sx-128:-
-
cpe:2.3:h:arista:7050sx-64:-
-
cpe:2.3:h:arista:7050sx-72q:-
-
cpe:2.3:h:arista:7050sx2-128:-
-
cpe:2.3:h:arista:7050sx2-72q:-
-
cpe:2.3:h:arista:7050sx3-48c8:-
-
cpe:2.3:h:arista:7050sx3-48yc12:-
-
cpe:2.3:h:arista:7050sx3-48yc8:-
-
cpe:2.3:h:arista:7050sx3-48yc:-
-
cpe:2.3:h:arista:7050sx3-96yc8:-
-
cpe:2.3:h:arista:7050tx-48:-
-
cpe:2.3:h:arista:7050tx-64:-
-
cpe:2.3:h:arista:7050tx-72q:-
-
cpe:2.3:h:arista:7050tx2-128:-
-
cpe:2.3:h:arista:7050tx3-48c8:-
-
cpe:2.3:h:arista:7060cx-32s:-
-
cpe:2.3:h:arista:7060cx2-32s:-
-
cpe:2.3:h:arista:7060dx4-32:-
-
cpe:2.3:h:arista:7060px4-32:-
-
cpe:2.3:h:arista:7060sx2-48yc6:-
-
cpe:2.3:h:arista:720xp-24y6:-
-
cpe:2.3:h:arista:720xp-24zy4:-
-
cpe:2.3:h:arista:720xp-48y6:-
-
cpe:2.3:h:arista:720xp-48zc2:-
-
cpe:2.3:h:arista:720xp-96zc2:-
-
cpe:2.3:h:arista:7250qx-64:-
-
cpe:2.3:h:arista:7260cx3-64:-
-
cpe:2.3:h:arista:7260cx3:-
-
cpe:2.3:h:arista:7260cx:-
-
cpe:2.3:h:arista:7260qx:-
-
cpe:2.3:h:arista:7300x-32q:-
-
cpe:2.3:h:arista:7300x-64s:-
-
cpe:2.3:h:arista:7300x-64t:-
-
cpe:2.3:h:arista:7300x3-32c:-
-
cpe:2.3:h:arista:7300x3-48yc4:-
-
cpe:2.3:h:arista:7304x3:-
-
cpe:2.3:h:arista:7308x3:-
-
cpe:2.3:h:arista:7320x-32c:-
-
-
-
cpe:2.3:h:arista:7368x4:-
-
cpe:2.3:o:arista:eos:4.21.0f
-
cpe:2.3:o:arista:eos:4.21.11m
-
cpe:2.3:o:arista:eos:4.21.12m
-
cpe:2.3:o:arista:eos:4.21.1f
-
cpe:2.3:o:arista:eos:4.21.2.4
-
cpe:2.3:o:arista:eos:4.21.3
-
cpe:2.3:o:arista:eos:4.21.3f
-
cpe:2.3:o:arista:eos:4.21.4.1f
-
cpe:2.3:o:arista:eos:4.21.8
-
cpe:2.3:o:arista:eos:4.21.8m
-
cpe:2.3:o:arista:eos:4.21.9m
-
cpe:2.3:o:arista:eos:4.22.0f
-
cpe:2.3:o:arista:eos:4.22.1f
-
cpe:2.3:o:arista:eos:4.22.3m
-
cpe:2.3:o:arista:eos:4.22.4m
-
cpe:2.3:o:arista:eos:4.22.6m
-
cpe:2.3:o:arista:eos:4.22.7m
-
cpe:2.3:o:arista:eos:4.23.0f
-
cpe:2.3:o:arista:eos:4.23.1f
-
cpe:2.3:o:arista:eos:4.23.2f
-
cpe:2.3:o:arista:eos:4.23.3m
-
cpe:2.3:o:arista:eos:4.23.4m
-
cpe:2.3:o:arista:eos:4.23.5m
-
cpe:2.3:o:arista:eos:4.24.0f
-
cpe:2.3:o:arista:eos:4.24.2.1f
-
cpe:2.3:o:arista:eos:4.24.2.4f
-
cpe:2.3:o:arista:eos:4.24.2f