CVE-2026-87668: CWE-121: Stack-based Buffer Overflow in Brocade Fabric OS
Description
CVE-2026-87668 is a stack-based buffer overflow vulnerability in the diagnostic execution utility of Brocade Fabric OS versions before 10.0.1. It occurs when an authenticated administrative user supplies a diagnostic command string with too many tokenized arguments, causing a memory overwrite and resulting in a denial of service via process crash.
CVSS v4.0
Score 6.9medium
Affected software
Brocade
Fabric OS
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
This vulnerability exists in Brocade Fabric OS's diagnostic execution utility where user-supplied input is tokenized into an internal argument array without boundary checks on the array's maximum capacity. An authenticated user with administrative privileges can exploit this by providing a crafted diagnostic command containing an excessive number of arguments, leading to a stack-based buffer overflow and process crash (denial of service).
Potential Impact
Successful exploitation causes a denial of service due to process crash. There is no indication of code execution or data corruption beyond the denial of service. Exploitation requires authenticated administrative access.
Mitigation Recommendations
No official patch or remediation details are provided in the available data. Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, restrict administrative access to trusted users and avoid running untrusted diagnostic commands.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- brocade
- Date Reserved
- 2026-09-08T22:51:12.106Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 6ac70ba22cdf04f656d9e1ad
Added to database: 10/08/2026, 03:18:58 UTC
Last enriched: 10/08/2026, 03:33:23 UTC
Last updated: 10/08/2026, 03:33:52 UTC
Views: 3
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.