CVE-2021-28504
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/04/2022
Last modified:
12/04/2022
Description
On Arista Strata family products which have “TCAM profile” feature enabled when Port IPv4 access-list has a rule which matches on “vxlan” as protocol then that rule and subsequent rules ( rules declared after it in ACL ) do not match on IP protocol field as expected.
Impact
Base Score 3.x
7.50
Severity 3.x
HIGH
Base Score 2.0
4.30
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:arista:eos:*:*:*:*:*:*:*:* | 4.26 (including) | 4.26.4m (excluding) |
cpe:2.3:o:arista:eos:*:*:*:*:*:*:*:* | 4.27 (including) | 4.27.1f (excluding) |
cpe:2.3:h:arista:ccs-710p-12:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:arista:ccs-710p-16p:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:arista:ccs-720xp-24y6:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:arista:ccs-720xp-24zy4:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:arista:ccs-720xp-48y6:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:arista:ccs-720xp-48zc2:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:arista:ccs-720xp-96zc2:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:arista:ccs-722xpm-48y4:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:arista:ccs-722xpm-48zy8:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:arista:dcs-7010tx-48:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:arista:dcs-7050cx3-32s:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:arista:dcs-7050cx3m-32s:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:arista:dcs-7050sx3-48c8:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page