Arista Networks Eos vulnerabilities
76 known vulnerabilities affecting arista_networks/eos.
Total CVEs
76
CISA KEV
1
actively exploited
Public exploits
0
Exploited in wild
1
Severity breakdown
CRITICAL8HIGH22MEDIUM39LOW7
Vulnerabilities
Page 3 of 4
CVE-2024-11185P4MEDIUMCVSS 6.5≥ 4.29.0, ≤ 4.29.10M≥ 4.30.0, ≤ 4.30.9M+3 more2025-05-27
CVE-2024-11185 [MEDIUM] CVE-2024-11185: On affected platforms running Arista EOS, ingress traffic on Layer 2 ports may, under certain condit
On affected platforms running Arista EOS, ingress traffic on Layer 2 ports may, under certain conditions, be improperly forwarded to ports associated with different VLANs, resulting in a breach of VLAN isolation and segmentation boundaries.
nvd
CVE-2026-73469P4MEDIUMCVSS 5.8≥ 4.35.0F, ≤ 4.35.4M2026-09-16
CVE-2026-73469 [MEDIUM] CWE-863 CVE-2026-73469: When specific platforms are using Arista EOS with a loose Unicast Reverse Path Forwarding (uRPF) con
When specific platforms are using Arista EOS with a loose Unicast Reverse Path Forwarding (uRPF) configuration, certain traffic may not be subjected to the intended verification drop. Consequently, traffic that should be dropped based on these routes could still be processed and forwarded by the device.
This issue was discovered internally by Arist
nvd
CVE-2026-73457P4MEDIUMCVSS 5.3≥ 4.36.0, ≤ 4.36.1F≥ 4.35.0, ≤ 4.35.5M+1 more2026-09-16
CVE-2026-73457 [MEDIUM] CWE-532 CVE-2026-73457: Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampli
Under certain circumstances on affected platforms running Arista EOS with gRPC Network Packet Sampling Interface (gNPSI) enabled, the gNPSI client credentials might be logged in clear text in local or remote accounting logs to authenticated users.
nvd
CVE-2024-6858P4MEDIUMCVSS 6.5≥ 4.31.0, ≤ 4.31.1F≥ 4.30.0, ≤ 4.30.5M+2 more2026-06-04
CVE-2024-6858 [MEDIUM] CWE-1287 CVE-2024-6858: In Arista’s EOS when in 802.1X mode, multi-auth unauthenticated hosts might be allowed access to a s
In Arista’s EOS when in 802.1X mode, multi-auth unauthenticated hosts might be allowed access to a switch port if there exists an EAPOL capable device in the fallback VLAN.
nvd
CVE-2026-73463P4MEDIUMCVSS 5.3≥ 4.36.0F, ≤ 4.36.0.1F≥ 4.35.0F, ≤ 4.35.5M+4 more2026-09-16
CVE-2026-73463 [MEDIUM] CWE-362 CVE-2026-73463: On affected platforms running Arista EOS, when multiple gRPC Network Security Interface (gNSI) trans
On affected platforms running Arista EOS, when multiple gRPC Network Security Interface (gNSI) transports are configured, a race condition in the gNSI Authz service may cause a policy rotation to fail silently. An authenticated user whose access was revoked by the new policy may retain unauthorized access to gRPC interfaces. This does not affect Boo
nvd
CVE-2026-77190P4MEDIUMCVSS 6.5≥ 4.36.0F, ≤ 4.36.1F≥ 4.35.0F, ≤ 4.35.5M+1 more2026-09-16
CVE-2026-77190 [MEDIUM] CWE-20 CVE-2026-77190: On affected platforms running Arista EOS, an unauthenticated attacker who is network-adjacent to the
On affected platforms running Arista EOS, an unauthenticated attacker who is network-adjacent to the switch and able to connect to a device with PIM Sparse Mode and MLAG configured, can send malformed messages that cause the Pimsm agent to terminate unexpectedly. The Pimsm agent is automatically restarted, but repeated attacks can cause the agent to
nvd
CVE-2026-19655P4MEDIUMCVSS 6.5≥ 4.35.0, ≤ 4.35.5M≥ 4.34.0, ≤ 4.34.7.1M+1 more2026-09-15
CVE-2026-19655 [MEDIUM] CWE-20 CVE-2026-19655: On affected platforms running Arista EOS with Dynamic Host Configuration Protocol (DHCP) relay/snoop
On affected platforms running Arista EOS with Dynamic Host Configuration Protocol (DHCP) relay/snooping configured with the information option (Option 82), or with the DHCP server configured with match criteria based on the information option, an unauthenticated attacker connected to a client-facing VLAN(s) where the relay is configured can send a sp
nvd
CVE-2026-2379P4MEDIUMCVSS 5.9≥ 4.34.0, ≤ 4.34.3M≥ 4.33.0M, ≤ 4.33.5M+6 more2026-06-05
CVE-2026-2379 [MEDIUM] CWE-672 CVE-2026-2379: On affected platforms with hardware IPSec support running Arista EOS with certain IPsec features ena
On affected platforms with hardware IPSec support running Arista EOS with certain IPsec features enabled, EOS may exhibit unexpected behavior in specific cases. Physical interface flaps and certain agent restarts can cause IPsec tunnel re-establishment with existing Security Associations, resulting in sequence number mismatches between tunnel endpoint
nvd
CVE-2026-73436P4MEDIUMCVSS 6.5≥ 4.36.0F, ≤ 4.36.1F≥ 4.35.0F, ≤ 4.35.5M+3 more2026-09-16
CVE-2026-73436 [MEDIUM] CWE-125 CVE-2026-73436: On affected platforms running Arista EOS with OSPFv2 and OSPFv2 segment routing configured, a specia
On affected platforms running Arista EOS with OSPFv2 and OSPFv2 segment routing configured, a specially crafted OSPFv2 packet from an adjacent OSPF neighbor may cause OSPF to restart unexpectedly.
nvd
CVE-2026-73468P4MEDIUMCVSS 6.5≥ 1.0.0, < 4.33.0F≥ 4.33.0F, ≤ 4.33.8M+3 more2026-09-16
CVE-2026-73468 [MEDIUM] CWE-670 CVE-2026-73468: A specially crafted packet can cause the premature expiry of multicast forwarding state on affected
A specially crafted packet can cause the premature expiry of multicast forwarding state on affected interfaces, potentially resulting in temporary multicast traffic loss during the affected period.
nvd
CVE-2026-73444P4MEDIUMCVSS 4.7≥ 4.36.0, ≤ 4.36.1F≥ 4.35.0, ≤ 4.35.5M+3 more2026-09-15
CVE-2026-73444 [MEDIUM] CWE-303 CVE-2026-73444: On affected platforms running Arista EOS with VRRPv2 IP Authentication Header (IP-AH) authentication
On affected platforms running Arista EOS with VRRPv2 IP Authentication Header (IP-AH) authentication configured, an unauthenticated attacker with access to the layer 2 network segment on which VRRP is running could bypass VRRP authentication and claim the virtual router master role, enabling the attacker to intercept, modify, or discard traffic that
nvd
CVE-2026-73466P4MEDIUMCVSS 6.3≥ 4.36.0, ≤ 4.36.1F≥ 4.35.0, ≤ 4.35.4M+3 more2026-09-15
CVE-2026-73466 [MEDIUM] CWE-532 CVE-2026-73466: On affected platforms running Arista EOS, under certain circumstances user passwordss may be written
On affected platforms running Arista EOS, under certain circumstances user passwordss may be written in clear text to log files during operations when specialized non-standard debugging trace levels are explicitly enabled.
To exploit these vulnerabilities, a malicious actor must already possess authenticated local administrative access to the devic
nvd
CVE-2026-73465P4MEDIUMCVSS 6.3≥ 4.36.0, ≤ 4.36.1F≥ 4.35.0, ≤ 4.35.4M+3 more2026-09-15
CVE-2026-73465 [MEDIUM] CWE-532 CVE-2026-73465: On affected platforms running Arista EOS, under certain circumstances plaintext private keys may be
On affected platforms running Arista EOS, under certain circumstances plaintext private keys may be written in clear text to log files during operations when specialized non-standard debugging trace levels are explicitly enabled.
To exploit these vulnerabilities, a malicious actor must already possess authenticated local administrative access to the
nvd
CVE-2024-27891P4MEDIUMCVSS 5.3≥ 4.32.0, ≤ 4.32.0.1F≥ 4.31.0, ≤ 4.31.2F+4 more2026-06-04
CVE-2024-27891 [MEDIUM] CWE-284 CVE-2024-27891: On affected platforms running Arista EOS with MACsec and egress ACLs configured on the same interfac
On affected platforms running Arista EOS with MACsec and egress ACLs configured on the same interfaces, the ACL policies may not be enforced for packets egressing on those ports. This can cause outgoing packets to incorrectly be allowed or denied.
nvd
CVE-2026-73467P4MEDIUMCVSS 6.3≥ 4.36.0, ≤ 4.36.1F≥ 4.35.0, ≤ 4.35.4M+3 more2026-09-15
CVE-2026-73467 [MEDIUM] CWE-532 CVE-2026-73467: On affected platforms running Arista EOS, under certain circumstances plaintext shared secrets for c
On affected platforms running Arista EOS, under certain circumstances plaintext shared secrets for configured Terminal Access Controller Access-Control System Plus (TACACS+) servers
nvd
CVE-2026-73460P4MEDIUMCVSS 6.1≥ 4.36.0, ≤ 4.36.1F2026-09-16
CVE-2026-73460 [MEDIUM] CWE-863 CVE-2026-73460: On affected platforms running Arista EOS with IS-IS graceful restart enabled, an unauthenticated att
On affected platforms running Arista EOS with IS-IS graceful restart enabled, an unauthenticated attacker who can inject a malformed IS-IS LSP PDU packet can cause the IS-IS graceful restart procedure to terminate prematurely. This may result in traffic loss following a restart event.
nvd
CVE-2026-73445P4MEDIUMCVSS 4.9≥ 4.36.0F, ≤ 4.36.0.1F≥ 4.35.0F, ≤ 4.35.5M+4 more2026-09-16
CVE-2026-73445 [MEDIUM] CWE-20 CVE-2026-73445: On affected platforms running Arista EOS, an issue with the gRPC Network Security Interface (gNSI) A
On affected platforms running Arista EOS, an issue with the gRPC Network Security Interface (gNSI) Authz Rotate RPC may cause an incorrect Authz policy which was uploaded in the ongoing RPC stream to become active. This does not affect Bootz.
This issue was discovered internally by Arista and the company is not aware of any malicious uses of this is
nvd
CVE-2026-73438P4MEDIUMCVSS 5.3≥ 4.36.0F, ≤ 4.36.1F≥ 4.35.0F, ≤ 4.35.5M+3 more2026-09-16
CVE-2026-73438 [MEDIUM] CWE-617 CVE-2026-73438: On affected platforms running Arista EOS with Open Shortest Path First version 3 (OSPFv3) configured
On affected platforms running Arista EOS with Open Shortest Path First version 3 (OSPFv3) configured, an unauthenticated attacker on the same OSPFv3 broadcast domain can send a specially crafted set of packets that can cause the Ospf3 agent to restart unexpectedly. The crash results in the loss of all OSPFv3 adjacencies on the affected device and ma
nvd
CVE-2024-8000P4MEDIUMCVSS 5.3≥ 4.32.0, ≤ 4.32.4M≥ 4.31.0, ≤ 4.31.5M+1 more2025-03-04
CVE-2024-8000 [MEDIUM] CWE-1284 CVE-2024-8000: On affected platforms running Arista EOS with 802.1X configured, certain conditions may occur where
On affected platforms running Arista EOS with 802.1X configured, certain conditions may occur where a dynamic ACL is received from the AAA server resulting in only the first line of the ACL being installed after an Accelerated Software Upgrade (ASU) restart.
Note: supplicants with pending captive-portal authentication during ASU would be impacted wit
nvd
CVE-2025-2796P4MEDIUMCVSS 5.3≥ 4.33.0, ≤ 4.33.2F2025-05-27
CVE-2025-2796 [MEDIUM] CVE-2025-2796: On affected platforms with hardware IPSec support running Arista EOS with IPsec enabled and anti-rep
On affected platforms with hardware IPSec support running Arista EOS with IPsec enabled and anti-replay protection configured, EOS may exhibit unexpected behavior in specific cases. Received duplicate encrypted packets, which should be dropped under normal anti-replay protection, will instead be forwarded due to this vulnerability.
Note: this issue does not
nvd