CVE-2026-73462On affected platforms running Arista EOS with IGMP (Internet Group Management Protocol) snooping configured (enabled by default on all VLANs), a network-adjacent unauthenticated attacker can send malformed network packets on an affected VLAN to cause the I Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Cao CVE-2026-73457Under certain circumstances, the gNPSI client credentials might be logged in clear text, in local or remote accounting logs to authenticated users. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-73456Under certain circumstances, an unauthenticated gNPSI client can craft a malicious request to allow arbitrary code execution, granting an attacker full administrative control over the compromised switch. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Nghiêm trọng CVE-2026-73442On affected platforms running Arista EOS with VRRP enabled, the peer device VRRP authentication credentials are logged in cleartext on the switch, allowing an authenticated user with sufficient privileges to view agent trace logs (or a system receiving for Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Thấp CVE-2026-73443On affected platforms running Arista EOS with VRRPv2 IP-AH authentication configured, an unauthenticated attacker within the same layer 2 network segment on which VRRP is running can capture a legitimate authenticated VRRP advertisement and replay it indef Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-77190Security Advisory 0177 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-73468Security Advisory 0175 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Cao CVE-2026-73440Security Advisory 0178 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Thấp CVE-2026-73469Security Advisory 0176 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-73453Security Advisory 0174 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Nghiêm trọng CVE-2026-73455Security Advisory 0173 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Cao CVE-2026-73438Security Advisory 0172 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Cao CVE-2026-73436Security Advisory 0171 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-73435Security Advisory 0171 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Cao CVE-2026-19640Security Advisory 0170 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Thấp CVE-2026-73463Security Advisory 0169 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-73445Security Advisory 0167 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-2380Security Advisory 0168 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-73464Security Advisory 0166 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Cao CVE-2026-73454Security Advisory 0165 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Cao CVE-2026-73439Security Advisory 0164 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Cao CVE-2026-73461Security Advisory 0163 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Nghiêm trọng CVE-2026-73447Security Advisory 0162 - gNSI Certz/Bootz OS Command Injection via Crafted Rotate Request Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Nghiêm trọng CVE-2026-73450Security Advisory 0161 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/09/2026 Mức độ nghiêm trọng Cao CVE-2026-73460Security Advisory 0160 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 15/09/2026 Mức độ nghiêm trọng Cao CVE-2026-73459Security Advisory 0160 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 15/09/2026 Mức độ nghiêm trọng Cao CVE-2026-73446Security Advisory 0160 Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 15/09/2026 Mức độ nghiêm trọng Cao CVE-2026-73444On affected platforms running Arista EOS with VRRPv2 IP Authentication Header (IP-AH) authentication configured, an unauthenticated attacker with access to the layer 2 network segment on which VRRP is running could bypass VRRP authentication and claim the Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 15/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-73437On affected platforms running Arista EOS with Dynamic Host Configuration Protocol (DHCP) relay configured, an unauthenticated attacker with network access could send a crafted DHCP reply packet from an IP address that is not configured as a helper/destinat Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 15/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-19655On affected platforms running Arista EOS with Dynamic Host Configuration Protocol (DHCP) relay/snooping configured with the information option (Option 82), or with the DHCP server configured with match criteria based on the information option, an unauthent Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 15/09/2026 Mức độ nghiêm trọng Cao CVE-2026-73458On affected platforms running Arista EOS with authenticated Bidirectional Forwarding Detection (BFD) sessions configured, a specially crafted packet can cause the BFD session(s) to go down. This may result in undesirable network changes because various rou Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 15/09/2026 Mức độ nghiêm trọng Nghiêm trọng CVE-2026-73467On affected platforms running Arista EOS, under certain circumstances plaintext shared secrets for configured Terminal Access Controller Access-Control System Plus (TACACS+) servers Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 15/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-73466On affected platforms running Arista EOS, under certain circumstances plaintext user passwords Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 15/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-73465On affected platforms running Arista EOS, under certain circumstances plaintext private keys Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 15/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-19641On affected platforms running Arista EOS with password authentication configured, a specially crafted password can create orphan authentication sessions. Repeated exploitation of this issue can exhaust available authentication resources, resulting in legit Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 15/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-73451On affected platforms running Arista EOS with dual switch cards and with ingress Security ACLs configured on Switched Virtual Interfaces (SVI) in shared mode, restarting of the secondary switchcard forwarding agent or insertion of secondary switchcard, can Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 15/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-75945A race condition may cause a supplicant to remain in an authorized state after a clear dot1x host all command is issued. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 14/09/2026 Mức độ nghiêm trọng Thấp CVE-2026-75944A race condition during supplicant re-authentication may leave a stale ACL entry that persists in the system. If the AclAgent subsequently restarts, this stale entry may be applied to new supplicants, resulting in incorrect access control enforcement. User Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 14/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-75943A brief (milliseconds to seconds) traffic leak may occur when an authenticated supplicant is removed, either via the clear dot1x host all CLI command or due to a supplicant timeout. During this window, the supplicant's traffic may pass without ACL enforcem Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 14/09/2026 Mức độ nghiêm trọng Thấp CVE-2026-77191All of the CVEs covered in this advisory apply to affected platforms running Arista EOS with 802.1X authentication and authorization enabled and Access Control Lists (ACLs) configured for per-supplicant policy enforcement. An authenticated supplicant on an Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 14/09/2026 Mức độ nghiêm trọng Thấp CVE-2026-73449On affected platforms running Arista EOS with both 802.1X port authentication and the RADIUS proxy feature configured with dynamic authorization, a low-privileged attacker on an adjacent network segment who induces a RADIUS packet through a configured RADI Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 14/09/2026 Mức độ nghiêm trọng Trung bình CVE-2026-2379Arista EOS IPsec Tunnel Sequence Number Mismatch via Interface Flaps when Anti-Replay is Disabled Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 05/06/2026 Mức độ nghiêm trọng Cao CVE-2026-7473Arista EOS Unexpected Tunnel Protocol Decapsulation and Forwarding Bypass Tình trạng khai thác KEV Bản vá CóNgày phát hành 05/06/2026 Mức độ nghiêm trọng Trung bình CVE-2025-8873Arista EOS Dataplane Denial of Service via Malformed IPsec Packet Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 04/06/2026 Mức độ nghiêm trọng Cao CVE-2023-5502On affected platforms running Arista EOS with 802.1x authentication configured on the access/trunk ports, a malicious supplicant may bypass authentication. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 04/06/2026 Mức độ nghiêm trọng Cao CVE-2024-27892On affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected (SSL Profiles Enabled). Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 04/06/2026 Mức độ nghiêm trọng Cao CVE-2024-27890On affected platforms running Arista EOS with OpenConfig configured, a gNMI Set request can be run when it should have been rejected (No SSL Profiles Enabled). Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 04/06/2026 Mức độ nghiêm trọng Cao CVE-2024-27891On affected platforms running Arista EOS with MACsec and egress ACLs configured on the same interfaces, the ACL policies may not be enforced for packets egressing on those ports. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 04/06/2026 Mức độ nghiêm trọng Trung bình CVE-2024-6858In Arista’s EOS when in 802.1X mode, multi-auth unauthenticated hosts might be allowed access to a switch port if there exists an EAPOL capable device in the fallback VLAN. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 04/06/2026 Mức độ nghiêm trọng Trung bình CVE-2025-7048On affected platforms running Arista EOS with MACsec configuration, a specially crafted packet can cause the MACsec process to terminate unexpectedly. Continuous receipt of these packets with certain MACsec configurations can cause longer term disruption o Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 06/01/2026 Mức độ nghiêm trọng Trung bình CVE-2025-8872A specially crafted packet can cause the OSFPv3 process to have high CPU utilization which may result in the OSFPv3 process being restarted Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 16/12/2025 Mức độ nghiêm trọng Cao CVE-2025-8870On affected platforms running Arista EOS, certain serial console input might result in an unexpected reload of the device. Tình trạng khai thác Khai thác công khai Bản vá CóNgày phát hành 14/11/2025 Mức độ nghiêm trọng Trung bình CVE-2025-6188On affected platforms running Arista EOS, maliciously formed UDP packets with source port 3503 may be accepted by EOS. UDP Port 3503 is associated with LspPing Echo Reply. This can result in unexpected behaviors, especially for UDP based services that do n Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 25/08/2025 Mức độ nghiêm trọng Cao CVE-2025-3456On affected platforms running Arista EOS, the global common encryption key configuration may be logged in clear text, in local or remote accounting logs. Knowledge of both the encryption key and protocol specific encrypted secrets from the device running-c Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 25/08/2025 Mức độ nghiêm trọng Thấp CVE-2025-2826n affected platforms running Arista EOS, ACL policies may not be enforced. IPv4 ingress ACL, MAC ingress ACL, or IPv6 standard ingress ACL enabled on one or more ethernet or LAG interfaces may result in ACL policies not being enforced for ingress packets. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 27/05/2025 Mức độ nghiêm trọng Thấp CVE-2025-2796On affected platforms with hardware IPSec support running Arista EOS with IPsec enabled and anti-replay protection configured, EOS may exhibit unexpected behavior in specific cases. Received duplicate encrypted packets, which should be dropped under normal Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 27/05/2025 Mức độ nghiêm trọng Trung bình CVE-2024-11185On affected platforms running Arista EOS, ingress traffic on Layer 2 ports may, under certain conditions, be improperly forwarded to ports associated with different VLANs, resulting in a breach of VLAN isolation and segmentation boundaries. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 27/05/2025 Mức độ nghiêm trọng Trung bình CVE-2024-9448On affected platforms running Arista EOS with Traffic Policies configured the vulnerability will cause received untagged packets not to hit Traffic Policy rules that they are expected to hit. If the rule was to drop the packet, the packet will not be dropp Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 08/05/2025 Mức độ nghiêm trọng Cao CVE-2025-0936On affected platforms running Arista EOS with a gNMI transport enabled, running the gNOI File TransferToRemote RPC with credentials for a remote server may cause these remote-server credentials to be logged or accounted on the local EOS device or possibly Tình trạng khai thác Khai thác công khai Bản vá CóNgày phát hành 07/05/2025 Mức độ nghiêm trọng Trung bình CVE-2024-8000On affected platforms running Arista EOS with 802.1X configured, certain conditions may occur where a dynamic ACL is received from the AAA server resulting in only the first line of the ACL being installed after an Accelerated Software Upgrade (ASU) restar Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 04/03/2025 Mức độ nghiêm trọng Trung bình CVE-2024-9135On affected platforms running Arista EOS with BGP Link State configured, BGP peer flap can cause the BGP agent to leak memory. This may result in BGP routing processing being terminated and route flapping. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 04/03/2025 Mức độ nghiêm trọng Trung bình CVE-2025-1260On affected platforms running Arista EOS with OpenConfig configured, a gNOI request can be run when it should have been rejected. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 04/03/2025 Mức độ nghiêm trọng Nghiêm trọng CVE-2025-1259On affected platforms running Arista EOS with OpenConfig configured, a gNOI request can be run when it should have been rejected. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 04/03/2025 Mức độ nghiêm trọng Cao CVE-2024-5872On affected platforms running Arista EOS, a specially crafted packet with incorrect VLAN tag might be copied to CPU, which may cause incorrect control plane behavior related to the packet, such as route flaps, multicast routes learnt, etc. Tình trạng khai thác Khai thác công khai Bản vá CóNgày phát hành 10/01/2025 Mức độ nghiêm trọng Trung bình CVE-2024-7095On affected platforms running Arista EOS with SNMP configured, if “snmp-server transmit max-size” is configured, under some circumstances a specially crafted packet can cause the snmpd process to leak memory. This may result in the snmpd process being term Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 10/01/2025 Mức độ nghiêm trọng Trung bình CVE-2023-3646On affected platforms running Arista EOS with mirroring to multiple destinations configured, an internal system error may trigger a kernel panic and cause system reload. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 29/08/2023 Mức độ nghiêm trọng Trung bình CVE-2023-24548On affected platforms running Arista EOS with VXLAN configured, malformed or truncated packets received over a VXLAN tunnel and forwarded in hardware can cause egress ports to be unable to forward packets Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 29/08/2023 Mức độ nghiêm trọng Trung bình CVE-2023-24545On affected platforms running Arista CloudEOS an issue in the Software Forwarding Engine (Sfe) can lead to a potential denial of service attack by sending malformed packets to the switch. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 12/04/2023 Mức độ nghiêm trọng Cao CVE-2023-24513On affected platforms running Arista CloudEOS a size check bypass issue in the Software Forwarding Engine (Sfe) may allow buffer over reads in later code. Additionally, depending on configured options this may cause a recomputation of the TCP checksum ... Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 12/04/2023 Mức độ nghiêm trọng Trung bình CVE-2023-24511On affected platforms running Arista EOS with SNMP configured, a specially crafted packet can cause a memory leak in the snmpd process. Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 12/04/2023 Mức độ nghiêm trọng Trung bình CVE-2021-28510For certain systems running EOS, a Precision Time Protocol (PTP) packet of a management/signaling message with an invalid Type-Length-Value (TLV) causes the PTP agent to restart. Repeated restarts of the service will make the service unavailable. Tình trạng khai thác Khai thác công khai Bản vá CóNgày phát hành 24/01/2023 Mức độ nghiêm trọng Trung bình CVE-2021-28511This advisory documents the impact of an internally found vulnerability in Arista EOS for security ACL bypass. The impact of this vulnerability is that the security ACL drop rule might be bypassed if a NAT ACL rule filter with permit action matches t ... Tình trạng khai thác Chưa ghi nhận bị khai thác Bản vá CóNgày phát hành 05/08/2022 Mức độ nghiêm trọng Trung bình CVE-2021-28505On affected Arista EOS platforms, if a VXLAN match rule exists in an IPv4 access-list that is applied to the ingress of an L2 or an L3 port/SVI, the VXLAN rule and subsequent ACL rules in that access list will ignore the specified IP protocol. Tình trạng khai thác Chưa xác nhận Bản vá CóNgày phát hành 14/04/2022 Mức độ nghiêm trọng Cao CVE-2021-28504On Arista Strata family products which have “TCAM profile” feature enabled when Port IPv4 access-list has a rule which matches on “vxlan” as protocol then that rule and subsequent rules ( rules declared after it in ACL ) do not match on IP protocol fi ... Tình trạng khai thác Chưa xác nhận Bản vá CóNgày phát hành 01/04/2022 Mức độ nghiêm trọng Cao CVE-2021-28507An issue has recently been discovered in Arista EOS where, under certain conditions, the service ACL configured for OpenConfig gNOI and OpenConfig RESTCONF might be bypassed, which results in the denied requests being forwarded to the agent. Tình trạng khai thác Chưa xác nhận Bản vá CóNgày phát hành 14/01/2022 Mức độ nghiêm trọng Trung bình CVE-2021-28506An issue has recently been discovered in Arista EOS where certain gNOI APIs incorrectly skip authorization and authentication which could potentially allow a factory reset of the device. Tình trạng khai thác Chưa xác nhận Bản vá CóNgày phát hành 14/01/2022 Mức độ nghiêm trọng Nghiêm trọng