Metrics
Affected Vendors & Products
| Source | ID | Title | 
|---|---|---|
|  EUVD | EUVD-2023-28561 | On affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe) can lead to a potential denial of service attack by sending malformed packets to the switch. This causes a leak of packet buffers and if enough malformed packets are received, the switch may eventually stop forwarding traffic. | 
Solution
The recommended resolution is to upgrade to a remediated software version at your earliest convenience. Artista recommends customers move to the latest version of each release that contains all the fixes listed below. CVE-2023-24545 has been fixed in the following releases: 4.29.2F and later releases in the 4.29.x train 4.28.5M and later releases in the 4.28.x train 4.27.8M and later releases in the 4.27.x train 4.26.9M and later releases in the 4.26.x train
Workaround
There is no mitigation / workaround for these issues.
Fri, 07 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: Arista
Published:
Updated: 2025-02-07T15:50:41.522Z
Reserved: 2023-01-26T00:00:00.000Z
Link: CVE-2023-24545
 Vulnrichment
                        Vulnrichment
                    Updated: 2024-08-02T11:03:17.803Z
 NVD
                        NVD
                    Status : Modified
Published: 2023-04-12T21:15:18.183
Modified: 2024-11-21T07:48:05.733
Link: CVE-2023-24545
 Redhat
                        Redhat
                    No data.
 OpenCVE Enrichment
                        OpenCVE Enrichment
                    No data.