Rapid7

vulnerability

Arista: EOS: CVE-2026-2379: security-advisory-0134

Severity
7
CVSS
(AV:N/AC:M/Au:N/C:C/I:N/A:N)
Published
Feb 17, 2026
Added
Feb 18, 2026
Modified
Feb 18, 2026

Description

On affected platforms with hardware IPSec support running Arista EOS with certain IPsec features enabled, EOS may exhibit unexpected behavior in specific cases. Physical interface flaps and certain agent restarts can cause IPsec tunnel re-establishment with existing Security Associations, resulting in sequence number mismatches between tunnel endpoints potentially causing unstable communication.

Solution

upgrade-solution-cve-2026-2379
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.