CVE-2024-9448: On affected platforms running Arista EOS with Traffic Policies configured the vulnerability will cause received untagged packets not to hit Traffic Policy rules that they are expected to hit. If the rule was to drop the packet, the packet will not be dropp
On affected platforms running Arista EOS with Traffic Policies configured the vulnerability will cause received untagged packets not to hit Traffic Policy rules that they are expected to hit. If the rule was to drop the packet, the packet will not be dropped and instead will be forwarded as if the rule was not in place. This could lead to packets being delivered to unexpected destinations.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-9448?
CVE-2024-9448 has a medium severity rating due to its potential impact on network traffic handling.
How do I fix CVE-2024-9448?
To fix CVE-2024-9448, update your Arista EOS to the latest patched version as recommended in Arista's security advisory.
What are the implications of CVE-2024-9448 on network performance?
CVE-2024-9448 can lead to untagged packets bypassing Traffic Policy rules, potentially affecting the expected traffic management outcomes.
Which platforms are impacted by CVE-2024-9448?
CVE-2024-9448 affects platforms running Arista EOS with Traffic Policies configured.
Can CVE-2024-9448 lead to security breaches?
Yes, CVE-2024-9448 could allow untagged packets to be improperly processed, which may create vulnerabilities in traffic control.