low · CVSS v3 3 · CVSS v4 2.1
CVE-2026-73442
On Arista EOS switches with VRRP enabled, the peer device’s VRRP authentication keys are written to the switch’s trace logs in cleartext. An
Overview
On Arista EOS switches with VRRP enabled, the peer device’s VRRP authentication keys are written to the switch’s trace logs in cleartext. An authenticated user with sufficient privileges can read these logs and obtain the credentials without needing network access to the VRRP segment.
Description
On affected platforms running Arista EOS with VRRP enabled, the peer device VRRP authentication credentials are logged in cleartext on the switch, allowing an authenticated user with sufficient privileges to view agent trace logs (or a system receiving forwarded log output) to obtain the peer device VRRP authentication credentials without having access to the network segment on which VRRP is running.
Impact
Confidentiality: VRRP authentication credentials are exposed, enabling an attacker to impersonate a peer device or gain unauthorized control over VRRP-enabled interfaces. Integrity and availability are not directly affected.
Remediation
['Apply the vendor‑issued patch that removes VRRP authentication data from trace logs.', 'If a patch is not yet available, disable VRRP logging or configure the logging level to exclude authentication information.', 'Consider using stronger VRRP authentication mechanisms (e.g., MD5) and ensure that only trusted users have access to trace logs.']
Risk context
The vulnerability is rated low (CVSS v3 3.0, v4 2.1) and currently has no EPSS score. While the impact is limited to credential disclosure, it is still advisable to patch or mitigate promptly to prevent credential compromise.
Affected products
- Arista EOS
- Arista Networks EOS
Scores
- Severity
- low
- CVSS v2
- 1.4
- CVSS v3
- 3
- CVSS v4
- 2.1
- EPSS
- —