On affected platforms running Arista EOS with MACsec and egress ACLs configured on the same interfaces, the ACL policies may not be enforced for packets egressing on those ports. This can cause outgoing packets to incorrectly be allowed or denied.
| Vendor | Product | Versions |
|---|---|---|
| arista | eos | 4.32.0, 4.31.0, 4.30.0, 4.29.0, 4.28.0, 4.27.2F |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| arista | eos | cert_advisory | 90% |
Updated severity to CRITICAL, added new affected version 4.32.0.1F, and marked the vulnerability as actively exploited.
Initial creation