CVE-2024-12378
Severity CVSS v4.0:
Pending analysis
Type:
CWE-319
Cleartext Transmission of Sensitive Information
Publication date:
08/05/2025
Last modified:
15/04/2026
Description
On affected platforms running Arista EOS with secure Vxlan configured, restarting the Tunnelsec agent will result in packets being sent over the secure Vxlan tunnels in the clear.
Impact
Base Score 3.x
9.10
Severity 3.x
CRITICAL



