CVE-2026-102165

Summary

On affected Arista Wi-Fi access points, an unauthenticated attacker with network access to the capture service can send a crafted packet to cause the service to crash or potentially achieve remote code execution. This exploit requires an uncommonly used non-default streaming mode.

Affected Software

VendorProductVersion RangeStatus
Arista NetworksWi-Fi Access Points22.0.0 <= 22.0.1F-32affected
Arista NetworksWi-Fi Access Points21.3.0 <= 21.3.0M-13affected
Arista NetworksWi-Fi Access Points1.0.0 < 21.3.0affected

Weaknesses

  • CWE-121: CWE-121 Stack-based Buffer Overflow

Workarounds

When using Live Packet Capture, use "Upload to server" as the streaming option instead of "Wireshark on local machine".

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References