Buffer Overflow Vulnerability in Brocade Fabric OS Security Library
CVE-2026-87676

6.9MEDIUM

Key Information:

Vendor

Brocade

Status
Vendor
CVE Published:
8 October 2026

What is CVE-2026-87676?

A stack-based buffer overflow vulnerability is present in the security library component of Brocade Fabric OS. This issue arises during the parsing of X.509 PEM certificates, specifically when the system fails to adequately validate the length of the Authority Key Identifier (AKI) extension. An authenticated user with administrative rights can exploit this by importing a malformed certificate that contains an oversized AKI extension. As the system attempts to process these attributes, it can lead to memory corruption, resulting in the crashing of the management daemon and creating a potential denial-of-service scenario.

Affected Version(s)

Fabric OS 0 < 10.0.1

References

CVSS V4

Score:
6.9
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.