MEDIUM🚩 CISA KEV⚡ EXPLOIT✓ PATCH🇬🇧 English

CVE-2026-7473

CVSS 6.9v4.0pub. 2026-06-05upd. 2026-06-09

Na platformach z systemem Arista EOS, na których skonfigurowana jest dekapsulacja tunelu (taka jak VXLAN, decap-groups lub interfejs tunelu GRE), przełącznik nieprawidłowo dekapsuluje i przekazuje nieoczekiwane spakowane pakiety z docelowym IP odpowiadającym skonfigurowanemu IP dekapsulacji. Problem wynika z tego, że przełącznik nie weryfikuje typu protokołu tunelu, co może prowadzić do nieoczekiwanego przetwarzania ruchu o niekonfigurowanych tunelach. Podatność była exploitowana w praktyce.

Pokaż oryginał (EN)

On affected platforms running Arista EOS where a tunnel decapsulation configuration—such as VXLAN (Virtual Extensible LAN), decap-groups, or a GRE (Generic Routing Encapsulation) tunnel interface—is present, the switch will incorrectly decapsulate and forward other unexpected tunneled packet with a destination IP matching its configured decapsulation IP. This occurs because the switch does not verify the tunnel protocol type, potentially leading to the unexpected processing of non-configured tunnel traffic. This issue has been reported as being exploited in the wild.

CVSS Vector
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:L/VA:N/SC:N/SI:L/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
  • Arista 7020sr 24c2

    HW
    Arista
    wszystkie wersje
  • Arista 7020sr 32c2

    HW
    Arista
    wszystkie wersje
  • Arista 7020srg 24c2

    HW
    Arista
    wszystkie wersje
  • Arista 7020tr 48

    HW
    Arista
    wszystkie wersje
  • Arista 7020tra 48

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr2 60

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr2a 30

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr2a 60

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr2k 30

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr2k 60

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr2m 30

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3 32d4

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3 32p4

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3 36s

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3 96

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3a 24d12

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3a 48d6

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3a 72

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3ak 24d12

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3ak 48d6

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3ak 72

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3am 24d12

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3am 48d6

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3am 72

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3mk 32d4s

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr3mk 32p4s

    HW
    Arista
    wszystkie wersje
  • Arista 7280cr 48

    HW
    Arista
    wszystkie wersje
  • Arista 7280dr3 24

    HW
    Arista
    wszystkie wersje
  • Arista 7280dr3a 36

    HW
    Arista
    wszystkie wersje
  • Arista 7280dr3a 54

    HW
    Arista
    wszystkie wersje

CISA KEV — szczegółyi

Dostawcai
Arista
Produkti
Extensible Operating System
Data dodania do KEVi
9 czerwca 2026
Termin remediation (USA)i
23 czerwca 2026(po terminie)
Wymagana akcja (CISA)i

Zastosuj mitygacje zgodnie z instrukcjami producenta, postępuj zgodnie z wytycznymi BOD 22-01 dla usług chmurowych lub zaprzestań użytkowania produktu, jeśli mitygacje są niedostępne.

tłumaczenie AI
Pokaż oryginał (EN)

Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.

Opis CISAi

Arista Extensible Operating System (EOS) zawiera lukę typu incomplete comparison with missing factors, gdy przełącznik niepoprawnie dekapsułuje i przekazuje nieoczekiwane spakowane pakiety z adresem IP docelowym pasującym do jego skonfigurowanego adresu IP dekapsułacji.

tłumaczenie AI
Pokaż oryginał (EN)

Arista Extensible Operating System (EOS) contains an incomplete comparison with missing factors vulnerability when the switch incorrectly decapsulate and forwards other unexpected tunneled packet with a destination IP matching its configured decapsulation IP.

🔴
NATYCHMIASTOWE DZIAŁANIE
Aktywnie wykorzystywane w atakach (CISA KEV). Załataj jak najszybciej.
CISA DEADLINE: 23 czerwca 2026
CWE
Referencje

Powiązane podatności

CVE-2014-7169CRITICAL9.8⚠ KEVPL ✓ten sam produkt

GNU Bash — niekompletna łatka Shellshock umożliwia command injection (CVE-2014-7169)

CVE-2014-6271CRITICAL9.8⚠ KEVPL ✓ten sam produkt

ShellShock — RCE poprzez zmienne środowiskowe w GNU Bash

CVE-2023-24509CRITICAL9.3PL ✓ten sam produkt

Arista EOS: privilege escalation na redundantnym module supervisor

CVE-2021-28500CRITICAL9.1PL ✓ten sam produkt

Arista EOS: nieprawidłowe użycie AAA API umożliwia nieograniczony dostęp lokalnym użytkownikom

CVE-2021-28506CRITICAL9.1PL ✓ten sam produkt

Arista EOS: pominięcie autoryzacji w gNOI API umożliwia reset urządzenia