On affected platforms with hardware IPSec support running Arista EOS with IPsec enabled and anti-replay protection configured, EOS may exhibit unexpected behavior in specific cases. Received duplicate encrypted packets, which should be dropped under normal anti-replay protection, will instead be forwarded due to this vulnerability.
Note: this issue does not affect VXLANSec or MACSec encryption functionality.
References
Configurations
No configuration.
History
No history.
Information
Published : 2025-05-27 23:15
Updated : 2026-06-17 09:07
NVD link : CVE-2025-2796
Mitre link : CVE-2025-2796
CVE.ORG link : CVE-2025-2796
JSON object : View
Products Affected
No product.
CWE
No CWE.
