Arista Update
3141Warning Date
Severity Level
Warning Number
Target Sector
24 March, 2020
● High
2020-1051
All
Description:
Arista has released security update to address multiple vulnerabilities in the following products:
- TerminAttr:
- All versions v1.7.2 and below
- CloudVision Portal (CVP):
- 2019.1.0, 2019.1.1, 2019.1.2
- All releases in the 2018 release train
- EOS
- 4.23.1F and below
- MOS
- 0.25 and below (While MOS is not vulnerable, it does use affected components in versions 0.25 and below)
Threats:
Attacker could exploit these vulnerabilities by conducting denial of service attack (DoS).
Best practice and Recommendations:
The CERT team encourages users to update the affected versions and to review Arista security advisory: