CVE-2026-87668: Brocade Fabric OS
Medium severity, CVSS 6.9. EPSS: 0.2% chance of exploitation in the next 30 days.
A stack-based buffer overflow vulnerability exists in the diagnostic execution utility of Brocade Fabric OS versions before 10.0.1. When processing command arguments for diagnostic operations, the utility tokenizes user-supplied input into an internal argument array without enforcing boundary checks on the maximum array capacity. An authenticated user with administrative access can exploit this vulnerability by supplying a crafted diagnostic command string containing an excessive number of tokenized arguments. This leads to a memory overwrite resulting in a denial of service (process crash).
Affected products
- Brocade Fabric OS: before 10.0.1 (fixed in 10.0.1)
Published 2026-10-08. Last modified 2026-10-08.