{
  "document": {
    "category": "security_advisory",
    "csaf_version": "2.0",
    "distribution": {
      "tlp": {
        "label": "WHITE",
        "url": "https://www.first.org/tlp/"
      }
    },
    "lang": "en-US",
    "publisher": {
      "category": "vendor",
      "contact_details": "support@arista.com",
      "name": "Arista PSIRT",
      "namespace": "https://www.arista.com"
    },
    "references": [
      {
        "category": "self",
        "summary": "Security advisory 197 canonical URL",
        "url": "https://www.arista.com/en/support/advisories-notices/security-advisory/24813-security-advisory-0197"
      }
    ],
    "title": "Security Advisory 197",
    "tracking": {
      "current_release_date": "2026-10-06T07:37:46Z",
      "generator": {
        "engine": {
          "name": "Arista Networks SecEng Service CSAF Generator"
        }
      },
      "id": "Arista Networks Security Advisory 197",
      "initial_release_date": "2026-10-06T07:37:46Z",
      "revision_history": [
        {
          "date": "2026-10-06T07:37:46Z",
          "number": "1",
          "summary": "Document created"
        }
      ],
      "status": "final",
      "version": "1"
    }
  },
  "product_tree": {
    "branches": [
      {
        "branches": [
          {
            "branches": [
              {
                "branches": [
                  {
                    "category": "product_version",
                    "name": "WiFi version 21.4.0M-12",
                    "product": {
                      "name": "WiFi version 21.4.0M-12",
                      "product_id": "CSAFPID-0"
                    }
                  },
                  {
                    "category": "product_version",
                    "name": "WiFi version 1.0.0",
                    "product": {
                      "name": "WiFi version 1.0.0",
                      "product_id": "CSAFPID-2"
                    }
                  },
                  {
                    "category": "product_version",
                    "name": "WiFi version 22.1.1F-61",
                    "product": {
                      "name": "WiFi version 22.1.1F-61",
                      "product_id": "CSAFPID-1"
                    }
                  }
                ],
                "category": "product_name",
                "name": "WiFi"
              }
            ],
            "category": "product_family",
            "name": "Software Products"
          }
        ],
        "category": "vendor",
        "name": "Arista Networks, Inc."
      }
    ]
  },
  "vulnerabilities": [
    {
      "cve": "CVE-2026-102167",
      "id": {
        "system_name": "Arista Bug ID",
        "text": "1846909"
      },
      "notes": [
        {
          "category": "description",
          "text": "On affected Arista Wi-Fi access points, a memory corruption vulnerability exists in access point\u2019s wired uplink network endpoints. An unauthenticated attacker can crash the sensor service or potentially achieve remote code execution. Exploitation requires the attacker to be on the same network segment as the access point\u2019s wired uplink.",
          "title": "CVE Description"
        },
        {
          "category": "other",
          "text": "No specific configuration is required beyond default operation. However, exploitation requires the attacker to have access to the access point's wired uplink network.",
          "title": "1846909: Required Config for Exploitation"
        }
      ],
      "product_status": {
        "first_affected": [
          "CSAFPID-2"
        ],
        "fixed": [
          "CSAFPID-0",
          "CSAFPID-1"
        ]
      },
      "references": [
        {
          "category": "external",
          "summary": "MITRE",
          "url": "https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2026-102167"
        }
      ],
      "remediations": [
        {
          "category": "vendor_fix",
          "details": "Fixed in WiFi version wifi-v21.4.0M-12",
          "product_ids": [
            "CSAFPID-0"
          ]
        },
        {
          "category": "vendor_fix",
          "details": "Fixed in WiFi version wifi-v22.1.1F-61",
          "product_ids": [
            "CSAFPID-1"
          ]
        },
        {
          "category": "none_available",
          "details": "Not fixed in WiFi version mwm-v1.0.0",
          "product_ids": [
            "CSAFPID-2"
          ]
        }
      ],
      "scores": [
        {
          "cvss_v3": {
            "baseScore": 7.5,
            "baseSeverity": "HIGH",
            "vectorString": "CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H",
            "version": "3.1"
          },
          "products": [
            "CSAFPID-1",
            "CSAFPID-2",
            "CSAFPID-0"
          ]
        }
      ],
      "title": "CVE-2026-102167"
    }
  ]
}