Impact
An unauthenticated P4Runtime client can craft a malicious packet during session initiation on Arista EOS, enabling arbitrary code execution and granting full administrative control. This CWE‑94 vulnerability compromises confidentiality, integrity, and availability.
Affected Systems
The flaw affects Arista Networks EOS. Versions impacted include 4.36.x from 4.36.2F onward, 4.35.x from 4.35.6M onward, and 4.34.x from 4.34.8M onward. P4Runtime must be enabled for the vulnerability to be exploitable.
Risk and Exploitability
The CVSS score of 9.5 indicates critical severity, yet the EPSS score is under 1 % and the issue does not appear in the CISA KEV catalog, suggesting a low current exploitation probability. With an open gRPC endpoint, an attacker who can reach the switch could use the vulnerability to execute code remotely. The main attack vector is an unauthenticated P4Runtime session.
OpenCVE Enrichment