CVE-2021-28509
NixOS vulnerability analysis and mitigation

Overview

CVE-2021-28509 is a vulnerability discovered in Arista EOS state streaming telemetry agent TerminAttr and OpenConfig transport protocols. The vulnerability was disclosed on May 26, 2022, affecting Arista EOS and TerminAttr software versions. The vulnerability allows TerminAttr to leak MACsec sensitive data in clear text to CloudVision's authorized users or authorized gNMI clients (Arista Advisory).

Technical details

The vulnerability has been assigned a CVSS v3.1 Base Score of 6.1 MEDIUM (CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:N). It is classified under CWE-319 (Cleartext Transmission of Sensitive Information) and CWE-255 (Credentials Management Errors). The vulnerability requires both high privileges and user interaction to be exploited (NVD).

Impact

When exploited, this vulnerability could allow MACsec sensitive data to be leaked in clear text, potentially enabling authorized users to decrypt or modify MACsec traffic on the device. This impacts the confidentiality and integrity of the protected network traffic (Arista Advisory).

Mitigation and workarounds

Temporary mitigation can be achieved by disabling the streaming agent on affected devices using the command 'daemon TerminAttr shutdown' for TerminAttr or 'management api gnmi no provider eos-native' for Octa. The permanent fix requires upgrading to remediated software versions: TerminAttr v1.10.11 and later releases, v1.16.8 and later releases in the v1.11.x-v1.16.x trains, or v1.19.2 and later releases in the v1.17.x-v1.19.x trains (Arista Advisory).

Additional resources


SourceThis report was generated using AI

Related NixOS vulnerabilities:

CVE ID

Severity

Score

Technologies

Component name

CISA KEV exploit

Has fix

Published date

CVE-2025-48606HIGH7.8
  • NixOSNixOS
  • android
NoNoDec 08, 2025
CVE-2025-48639HIGH7.3
  • NixOSNixOS
  • android
NoNoDec 08, 2025
CVE-2025-48625HIGH7
  • NixOSNixOS
  • android
NoNoDec 08, 2025
CVE-2025-48608MEDIUM5.5
  • NixOSNixOS
  • android
NoNoDec 08, 2025
CVE-2025-48569MEDIUM5.5
  • NixOSNixOS
  • android
NoNoDec 08, 2025

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management