HIGH · 7.5

CVE-2023-24510

On the affected platforms running EOS, a malformed DHCP packet might cause the DHCP relay agent to restart.

Vulnerability Description

On the affected platforms running EOS, a malformed DHCP packet might cause the DHCP relay agent to restart.

CVSS Score

7.5

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
HIGH

Affected Products

VendorProductVersions
AristaEos<= 4.25.10m
AristaCeos-
AristaCloudeos-
AristaVeos-
Arista7010T-
Arista7010T-48-
Arista7010Tx-48-
Arista7010Tx-48-Dc-
Arista7020R-
Arista7020Sr-24C2-
Arista7020Sr-32C2-
Arista7020Tr-48-
Arista7020Tra-48-
Arista7050Cx3-32S-
Arista7050Cx3M-32S-
Arista7050Qx-32S-
Arista7050Qx2-32S-
Arista7050Sx-128-
Arista7050Sx-64-
Arista7050Sx-72Q-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2023-24510?

CVE-2023-24510 is a vulnerability with a CVSS score of 7.5 (HIGH). On the affected platforms running EOS, a malformed DHCP packet might cause the DHCP relay agent to restart.

How severe is CVE-2023-24510?

CVE-2023-24510 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2023-24510?

Check the references section above for vendor advisories and patch information. Affected products include: Arista Eos, Arista Ceos, Arista Cloudeos, Arista Veos, Arista 7010T.