VYPR
High severity7.5NVD Advisory· Published Apr 16, 2020· Updated Jun 17, 2026

CVE-2019-18948

CVE-2019-18948

Description

An issue was found in Arista EOS. Specific malformed ARP packets can impact the software forwarding of VxLAN packets. This issue is found in Arista’s EOS VxLAN code, which can allow attackers to crash the VxlanSwFwd agent. This affects EOS 4.21.8M and below releases in the 4.21.x train, 4.22.3M and below releases in the 4.22.x train, 4.23.1F and below releases in the 4.23.x train, and all releases in 4.15, 4.16, 4.17, 4.18, 4.19, 4.20 code train.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

9
  • Arista/Eos8 versions
    cpe:2.3:o:arista:eos:*:*:*:*:*:*:*:*+ 7 more
    • cpe:2.3:o:arista:eos:*:*:*:*:*:*:*:*range: >=4.21.0,<=4.21.8m
    • cpe:2.3:o:arista:eos:4.15:*:*:*:*:*:*:*
    • cpe:2.3:o:arista:eos:4.16:*:*:*:*:*:*:*
    • cpe:2.3:o:arista:eos:4.17:*:*:*:*:*:*:*
    • cpe:2.3:o:arista:eos:4.18:*:*:*:*:*:*:*
    • cpe:2.3:o:arista:eos:4.19:*:*:*:*:*:*:*
    • cpe:2.3:o:arista:eos:4.20:*:*:*:*:*:*:*
    • (no CPE)range: 4.21.8M and below releases in the 4.21.x train, 4.22.3M and below releases in the 4.22.x train, 4.23.1F and below releases in the 4.23.x train, and all releases in 4.15, 4.16, 4.17, 4.18, 4.19, 4.20 code train
  • Arista/EOSdescription

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.