PT-2025-51781 · Arista · Arista Eos
Published
2025-12-16
·
Updated
2025-12-17
·
CVE-2025-8872
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
Arista EOS (affected versions not specified)
Description
A specially crafted packet can cause high CPU utilization in the OSPFv3 process on affected platforms running Arista EOS with OSPFv3 configured. This may lead to the restart of the OSPFv3 process and disruption of OSPFv3 routes on the switch. The issue was discovered internally by Arista and there is no known malicious use in customer networks.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Resource Exhaustion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Arista Eos