216.73.217.22

CVE-2024-9448

· Published 08/05/2025 20:15 · Modified 08/05/2025 20:15

Labels: CVE-2024-9448 2025-05-08CVE-2024-9448CWE-1284[email protected]

Essential information

Published
08/05/2025 20:15
Modified
08/05/2025 20:15
Author
Creator
CVSS
7.5 HIGH (v3.1)
CISA KEV
No
CWE
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

CVSS metrics

Description

On affected platforms running Arista EOS with Traffic Policies configured the vulnerability will cause received untagged packets not to hit Traffic Policy rules that they are expected to hit. If the rule was to drop the packet, the packet will not be dropped and instead will be forwarded as if the rule was not in place. This could lead to packets being delivered to unexpected destinations.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
[email protected]
NVD
View on NVD

Affected products (CPE)

ProductCPE
arista / eos cpe:2.3:a:arista:eos:*:*:*:*:*:*:*:*

References