PT-2025-51781 · Arista · Arista Eos

Published

2025-12-16

·

Updated

2025-12-17

·

CVE-2025-8872

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Arista EOS (affected versions not specified)
Description A specially crafted packet can cause high CPU utilization in the OSPFv3 process on affected platforms running Arista EOS with OSPFv3 configured. This may lead to the restart of the OSPFv3 process and disruption of OSPFv3 routes on the switch. The issue was discovered internally by Arista and there is no known malicious use in customer networks.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Resource Exhaustion

Weakness Enumeration

Related Identifiers

CVE-2025-8872

Affected Products

Arista Eos