CVE detail

CVE-2023-6068 — CVE-2023-6068

Published 2024-03-04 · Modified 2026-06-17 · Vendor arista · Product multiaccess · Source nvd
LOW
severity
CVSS-derived band
3.1
CVSS v3
0–10 scale
0.0034
EPSS probability
exploitation probability, 30d
26.0%
EPSS percentile
percentile vs all CVEs
NOT LISTED
CISA KEV
known exploited catalog

Description

On affected 7130 Series FPGA platforms running MOS and recent versions of the MultiAccess FPGA, application of ACL’s may result in incorrect operation of the configured ACL for a port resulting in some packets that should be denied being permitted and some

Remediation

vendor remediation guidance

The recommended resolution is to upgrade to a remediated software version at your earliest convenience. Arista recommends customers move to the latest version of each release that contains all the fixes listed below. CVE-2023-6068 has been fixed in the following releases: * MultiAccess FPGA 1.8.0 and later

workarounds

The workaround is to only apply one access-list to any particular port after the MultiAccess image is loaded into the FPGA. If a new access-list is to be applied to a port, the FPGA image should be reloaded after the access-list is applied. Run the following commands to reload the FPGA image, where the line in yellow represents new access control lists to be added: switch(config-app-multiaccess)#shut switch(config-app-multiaccess)#multiaccess-group 0 client 0 access-list new_acl_if_need switch(config-app-multiaccess)#no shut The previous applied access control lists will automatically apply after FPGA reload.

ProductVulnerable rangeFixed versionAdvisory
Arista Networks MOSnot specifiedadvisory ↗

References

cvedb.io · NVD · CISA KEV · FIRST EPSS · vendor advisories (CVE Program List v5). Informational only, no warranty — verify every remediation against the vendor advisory before acting on it. This product uses data from the NVD API but is not endorsed or certified by the NVD, CISA, FIRST.org or any vendor named. CVE® is a registered trademark of The MITRE Corporation.