On affected platforms with hardware IPSec support running Arista EOS with certain IPsec features enabled, EOS may exhibit unexpected behavior in specific cases. Physical interface flaps and certain agent restarts can cause IPsec tunnel re-establishment with existing Security Associations, resulting in sequence number mismatches between tunnel endpoints potentially causing unstable communication.
Metrics
Affected Vendors & Products
References
History
Fri, 05 Jun 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | On affected platforms with hardware IPSec support running Arista EOS with certain IPsec features enabled, EOS may exhibit unexpected behavior in specific cases. Physical interface flaps and certain agent restarts can cause IPsec tunnel re-establishment with existing Security Associations, resulting in sequence number mismatches between tunnel endpoints potentially causing unstable communication. | |
| Title | Arista EOS IPsec Tunnel Sequence Number Mismatch via Interface Flaps when Anti-Replay is Disabled | |
| Weaknesses | CWE-672 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Arista
Published:
Updated: 2026-06-05T17:59:40.999Z
Reserved: 2026-02-11T21:25:16.721Z
Link: CVE-2026-2379
No data.
Status : Awaiting Analysis
Published: 2026-06-05T18:17:05.750
Modified: 2026-06-05T19:03:48.933
Link: CVE-2026-2379
No data.
OpenCVE Enrichment
Updated: 2026-06-05T19:45:03Z