vulnerability
security-advisory-0074
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 4 | (AV:N/AC:M/Au:N/C:N/I:P/A:N) | Apr 1, 2022 | Sep 4, 2024 | Jan 14, 2026 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Apr 1, 2022
Added
Sep 4, 2024
Modified
Jan 14, 2026
Description
On affected platforms running Arista EOS, deny rules fail to get applied for packets of size higher than the configured maximum transmission unit (MTU), which results in packets of large size getting routed by the switch. This issue was discovered internally and Arista is not aware of any malicious uses of this issue in customer networks.
Solution
upgrade-solution-cve-2021-28504
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.