Database/Firmware, BMC & network fabric

Arista EOS (tunnel decapsulation): **[KEV]** With VXLAN, decap-groups or GRE configured, the switch incorrectly
CVE-2026-7473Firmware, BMC & network fabricKnown exploitedcurated
Impact
**[KEV]** With VXLAN, decap-groups or GRE configured, the switch incorrectly decapsulates and forwards unexpected tunnelled packets — a tenant-isolation break on a VXLAN-segmented GPU fabric, exploited in the wild
Who can reach it
Network, fabric-local
What to do
EOS upgrade with fabric failover; on a multi-tenant VXLAN fabric this is a segmentation failure, so it also demands a review of whether cross-tenant traffic actually occurred
References
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.