CVE-2026-73468

Summary

A specially crafted packet can cause the premature expiry of multicast forwarding state on affected interfaces, potentially resulting in temporary multicast traffic loss during the affected period.

Affected Software

VendorProductVersion RangeStatus
Arista NetworksEOS1.0.0 < 4.33.0Faffected
Arista NetworksEOS4.33.0F <= 4.33.8Maffected
Arista NetworksEOS4.34.0F <= 4.34.7.1Maffected
Arista NetworksEOS4.35.0F <= 4.35.5Maffected
Arista NetworksEOS4.36.0F <= 4.36.1Faffected

Weaknesses

  • CWE-670: CWE-670 Always-Incorrect Control Flow Implementation

Workarounds

There is no mitigation available to address this vulnerability.

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References