Multicast Forwarding State Expiry in Arista Networks Products
CVE-2026-73468

7.1HIGH

Key Information:

Status
Vendor
CVE Published:
16 September 2026

What is CVE-2026-73468?

A vulnerability in Arista Networks products allows specially crafted packets to prematurely expire multicast forwarding states on affected interfaces. This can lead to temporary disruptions in multicast traffic, impacting the performance and reliability of network operations during the affected period. Organizations utilizing Arista switches should assess their network configurations and implement recommended mitigations to maintain multicast traffic integrity.

Affected Version(s)

EOS 1.0.0 < 4.33.0F

EOS 4.33.0F <= 4.33.8M

EOS 4.34.0F <= 4.34.7.1M

References

CVSS V4

Score:
7.1
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.