CVE-2018-5255: Arista Eos

Medium severity, CVSS 6.5. EPSS: 1% chance of exploitation in the next 30 days.

The Mlag agent in Arista EOS 4.19 before 4.19.4M and 4.20 before 4.20.2F allows remote attackers to cause a denial of service (agent restart) via crafted UDP packets.

Affected products

  • Arista Eos: from 4.19, before 4.19.4m (fixed in 4.19.4m); from 4.20, before 4.20.2f (fixed in 4.20.2f)

Published 2018-03-05. Last modified 2026-06-17.