CVE-2024-27891
Awaiting Analysis
Awaiting Analysis - Queue
MACsec and Egress ACL Bypass in Arista EOS
Publication date: 2026-06-04
Last updated on: 2026-06-04
Assigner: Arista Networks, Inc.
Description
Description
On affected platforms running Arista EOS with MACsec and egress ACLs configured on the same interfaces, the ACL policies may not be enforced for packets egressing on those ports. This can cause outgoing packets to incorrectly be allowed or denied.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| arista | arista_eos | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-284 | The product does not restrict or incorrectly restricts access to a resource from an unauthorized actor. |