Filtered by vendor Arista
Subscriptions
Filtered by product 7280sr2a-48yc6-m
Subscriptions
Total
1 CVE
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2026-7473 | 1 Arista | 102 7020sr-24c2, 7020sr-32c2, 7020srg-24c2 and 99 more | 2026-06-09 | 5.8 Medium |
| On affected platforms running Arista EOS where a tunnel decapsulation configuration—such as VXLAN (Virtual Extensible LAN), decap-groups, or a GRE (Generic Routing Encapsulation) tunnel interface—is present, the switch will incorrectly decapsulate and forward other unexpected tunneled packet with a destination IP matching its configured decapsulation IP. This occurs because the switch does not verify the tunnel protocol type, potentially leading to the unexpected processing of non-configured tunnel traffic. This issue has been reported as being exploited in the wild. | ||||
Page 1 of 1.