Database/Firmware, BMC & network fabric

Arista EOS: crafted password creates orphan sessions until logins are exhausted
Impact
A specially crafted password leaves behind orphan authentication sessions. Repeating it exhausts the switch's authentication resources and legitimate administrators can no longer log in. Traffic keeps forwarding, but the operator loses the CLI and API path to the switch - which is exactly the access needed to diagnose a fabric problem or drain a rack. On a fabric where the same automation credentials hit every switch, one attacker who can reach the management address can lock the operator out of a wide slice of the fleet. Arista found this internally and reports no known exploitation.
Who can reach it
Network-reachable, no authentication required - the attacker only needs to reach the switch's login service (SSH, eAPI or console server) and submit crafted passwords.
What to do
Upgrade to the fixed EOS release or hotfix named in Arista security advisory 0152; the record does not state a fixed version. In the meantime, keep switch management interfaces on an isolated management VLAN with control-plane ACLs limiting who can attempt authentication at all.
References
Related entries
- Insyde InsydeH2O on ARM platforms (HDD password storage in UEFI variables): HDD passwords are recoverable from UEFICVE-2026-8810 · Insyde InsydeH2O on ARM platforms (HDD password storage in UEFI variables)Medium
- Dell iDRAC (u-boot): Improper error handling grants access to the u-boot shell — pre-BMC-OS control, i.eCVE-2018-15776 · Dell iDRAC (u-boot)Medium
- Intel SSD DC S4500 and SSD DC S4600 series firmware before SCV10150 - improper authentication: Improper authenticationCVE-2018-18095 · Intel SSD DC S4500 and SSD DC S4600 series firmware before SCV10150 - improper authenticationMedium
- Intel Boot Guard in Intel CSME / TXE / SPS: Insecure default initialisation in Boot Guard means the S3 resume path doesCVE-2020-8705 · Intel Boot Guard in Intel CSME / TXE / SPSMedium
- Intel / Solidigm SSD, SSD DC and Optane SSD firmwareCVE-2021-33077 · Intel / Solidigm SSD, SSD DC and Optane SSD firmware - control-flow flaw and uncleared debug data reachable over…Medium
- Intel Boot Guard and Intel TXT (hardware debug / INIT): Hardware debug modes and processor INIT handling can overrideCVE-2022-0004 · Intel Boot Guard and Intel TXT (hardware debug / INIT)Medium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.