Vulnerability Description
On the affected platforms running EOS, a malformed DHCP packet might cause the DHCP relay agent to restart.
CVSS Score
7.5
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Arista | Eos | <= 4.25.10m |
| Arista | Ceos | - |
| Arista | Cloudeos | - |
| Arista | Veos | - |
| Arista | 7010T | - |
| Arista | 7010T-48 | - |
| Arista | 7010Tx-48 | - |
| Arista | 7010Tx-48-Dc | - |
| Arista | 7020R | - |
| Arista | 7020Sr-24C2 | - |
| Arista | 7020Sr-32C2 | - |
| Arista | 7020Tr-48 | - |
| Arista | 7020Tra-48 | - |
| Arista | 7050Cx3-32S | - |
| Arista | 7050Cx3M-32S | - |
| Arista | 7050Qx-32S | - |
| Arista | 7050Qx2-32S | - |
| Arista | 7050Sx-128 | - |
| Arista | 7050Sx-64 | - |
| Arista | 7050Sx-72Q | - |
Related Weaknesses (CWE)
References
- https://www.arista.com/en/support/advisories-notices/security-advisory/17445-secVendor Advisory
- https://www.arista.com/en/support/advisories-notices/security-advisory/17445-secVendor Advisory
FAQ
What is CVE-2023-24510?
CVE-2023-24510 is a vulnerability with a CVSS score of 7.5 (HIGH). On the affected platforms running EOS, a malformed DHCP packet might cause the DHCP relay agent to restart.
How severe is CVE-2023-24510?
CVE-2023-24510 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2023-24510?
Check the references section above for vendor advisories and patch information. Affected products include: Arista Eos, Arista Ceos, Arista Cloudeos, Arista Veos, Arista 7010T.