Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xhpm-f58r-37px

Опубликовано: 05 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 8.7
CVSS3: 7.5

Описание

On affected platforms running Arista EOS with IPsec configured, a specially crafted packet can cause the dataplane to stop processing all IPsec traffic. The control plane may detect this condition, and attempt to reset the IPsec processing pipeline. After reset traffic may not resume being processed. There is no impact to non-IPsec traffic or to IPsec traffic not originating or terminating on the system. This issue was reported by an Arista customer.

On affected platforms running Arista EOS with IPsec configured, a specially crafted packet can cause the dataplane to stop processing all IPsec traffic. The control plane may detect this condition, and attempt to reset the IPsec processing pipeline. After reset traffic may not resume being processed. There is no impact to non-IPsec traffic or to IPsec traffic not originating or terminating on the system. This issue was reported by an Arista customer.

EPSS

Процентиль: 32%
0.00386
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-1286

Связанные уязвимости

CVSS3: 7.5
nvd
2 месяца назад

On affected platforms running Arista EOS with IPsec configured, a specially crafted packet can cause the dataplane to stop processing all IPsec traffic. The control plane may detect this condition, and attempt to reset the IPsec processing pipeline. After reset traffic may not resume being processed. There is no impact to non-IPsec traffic or to IPsec traffic not originating or terminating on the system. This issue was reported by an Arista customer.

EPSS

Процентиль: 32%
0.00386
Низкий

8.7 High

CVSS4

7.5 High

CVSS3

Дефекты

CWE-1286