在运行 Arista EOS 并配置了 MLAG 双主检测(Dual Primary Detection)的受影响平台上,能够访问双主检测网络段的未认证攻击者可以发送特制数据包来干扰双主状态。如果此时 MLAG 主交换机发生故障,而网络中仍存在这些特制数据包,从交换机将错误地判断自身处于双主状态,并因此禁用其接口(err-disable),导致流量中断。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Arista Networks | EOS | 4.36.0 ~ 4.36.1F | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-73447 | 9.1 CRITICAL | Security Advisory 0162 - gNSI Certz/Bootz OS Command Injection via Crafted Rotate Request |
| CVE-2026-86108 | 8.0 HIGH | Security Advisory 0181 |
| CVE-2026-86109 | 6.6 MEDIUM | Security Advisory 0182 |
No comments yet