UNKNOWN Arista
CVE-2026-73444
Security Advisory 0157
Date: September 9, 2026
Revision
Date
Changes
1.0
September 9, 2026
Initial release
Description
All of the CVEs covered in this advisory apply to affected platforms running Arista EOS with the Virtual Router Redundancy Protocol (VRRP) enabled.
In addition, CVE-2026-73444 and CVE-2026-73443 require version 2 (VRRPv2) configured with VRRPv2 authentication enabled. VRRPv2 is the default version for Arista EOS but VRRP Authentication is not enabled by default. VRRP vers ...
Affected Products
- CVE-2026-73444
- CVE-2026-73443
References
- https://www.arista.com/en/support/advisories-notices/security-advisory/24713-security-advi
- https://nvd.nist.gov/vuln/detail/CVE-2026-73444
- https://nvd.nist.gov/vuln/detail/CVE-2026-73443
This unknown severity vulnerability was published on 2026-09-09 via Arista. Affected: CVE-2026-73444, CVE-2026-73443.
vulnfeed aggregates 13138 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.