AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2025-2796

MEDIUM · CVSS 5.3 EPSS 0.17%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-05-27 · Last synced 2026-08-04

CyberRota Analysis

This is a medium severity vulnerability with a CVSS score of 5.3. See the original NVD description below for full technical details.

CVE
CVE-2025-2796
Severity
MEDIUM
CVSS
5.3
EPSS
0.17%

Original NVD Description

On affected platforms with hardware IPSec support running Arista EOS with IPsec enabled and anti-replay protection configured, EOS may exhibit unexpected behavior in specific cases. Received duplicate encrypted packets, which should be dropped under normal anti-replay protection, will instead be forwarded due to this vulnerability. Note: this issue does not affect VXLANSec or MACSec encryption functionality.