GPU VulnDB

Database/Firmware, BMC & network fabric

Arista EOS: malformed packets crash the IGMP snooping agent and flood multicast to the whole VLAN

CVSS 7.1CVE-2026-73462Firmware, BMC & network fabriccurated

Impact

An unauthenticated device on an affected VLAN can send malformed packets that terminate the IGMP snooping agent. While it is down, multicast that was being constrained to subscribed ports floods every port in the VLAN, and repeated exploitation keeps it that way. On a datacenter fabric this is a bandwidth and isolation problem at once: multicast intended for a subset of nodes reaches every host on the VLAN, and the added load lands on links that GPU nodes share for storage and management traffic. IGMP snooping is enabled by default on all VLANs, so affected switches are exposed unless it was deliberately turned off.

Who can reach it

Network-adjacent and unauthenticated - any host or tenant VM with a port on an affected VLAN. No credentials on the switch are needed.

What to do

Apply the fixed EOS release or hotfix listed in Arista advisory 0159. The advisory is the authority on which releases carry the fix; plan for the switch to be taken through an upgrade, which for a leaf switch means the GPU racks behind it lose their uplinks unless they are dual-homed. Disabling IGMP snooping on VLANs that do not need it removes the exposure but gives up the multicast constraint itself.

References

Related entries

All Firmware, BMC & network fabric entries

This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.