Arista NetworksCVE-2026-73444
On affected platforms running Arista EOS with VRRPv2 IP Authentication Header
Medium5.3CVE-2026-73444 · Published Sep 15, 2026 · updated Sep 16, 2026
On affected platforms running Arista EOS with VRRPv2 IP Authentication Header (IP-AH) authentication configured, an unauthenticated attacker with access to the layer 2 network segment on which VRRP is running could bypass VRRP authentication and claim the virtual router master role, enabling the attacker to intercept, modify, or discard traffic that hosts on the segment send to the virtual gateway address.
Affected versions
| Package | Affected | Fixed in |
|---|---|---|
| EOS Product | >= 4.36.0, <= 4.36.1F | No fix yet |
| >= 4.35.0, <= 4.35.5M | No fix yet | |
| >= 4.34.0, <= 4.34.7M | No fix yet | |
| >= 4.33.0, <= 4.33.9M | No fix yet |
Details and references
- CVSS 4.0
- CVSS:4.0/AV:A/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
- Severity from
- the vendor (its own CVE record or advisory)
- Weakness
- CWE-303
More Arista Networks advisories
All Arista Networks| Date | Advisory | Severity | Fixed in |
|---|---|---|---|
| Sep 15 | Arista Networks EOS: denial of service | Medium6.5 | No fix yet |
| Sep 15 | Arista Networks EOS: improper input validation | High7.1 | No fix yet |
| Sep 15 | On affected platforms running Arista EOS with authenticated Bidirectional... | Critical9.2 | No fix yet |
| Sep 15 | Arista Networks EOS: secrets in logs | Medium6.0 | No fix yet |
| Sep 15 | Arista Networks EOS: secrets in logs | Medium6.0 | No fix yet |
| Sep 15 | Arista Networks EOS: secrets in logs | Medium6.0 | No fix yet |