Description
Cryptographic validation of upgrade images could be circumventing by dropping a specifically crafted file into the upgrade ISO
Problem types
CWE-347 Improper Verification of Cryptographic Signature
Product status
Any version
Any version
Any version
Any version
Any version
Any version
References
www.arista.com/...rity-advisory/22538-security-advisory-0124