CVE-2020-24360: Arista Eos

High severity, CVSS 7.4. EPSS: 0.7% chance of exploitation in the next 30 days.

An issue with ARP packets in Arista’s EOS affecting the 7800R3, 7500R3, and 7280R3 series of products may result in issues that cause a kernel crash, followed by a device reload. The affected Arista EOS versions are: 4.24.2.4F and below releases in the 4.24.x train; 4.23.4M and below releases in the 4.23.x train; 4.22.6M and below releases in the 4.22.x train.

Affected products

  • Arista Eos: from 4.22.0f, up to and including 4.22.6m; from 4.23.0f, up to and including 4.23.4m; from 4.24.0f, up to and including 4.24.2.4f

Published 2020-12-28. Last modified 2026-06-17.