Memory Buffer Overflow in Brocade Fabric OS Affects Internal Diagnostic Routines
CVE-2026-94582

6.8MEDIUM

Key Information:

Vendor

Brocade

Status
Vendor
CVE Published:
8 October 2026

What is CVE-2026-94582?

A memory buffer overflow vulnerability has been identified in the internal diagnostic and routing validation features of the Fabric Shortest Path First (FSPF) protocol within Brocade Fabric OS versions prior to 10.0.1. This vulnerability arises due to improper handling of diagnostic state payloads, which can lead to the overwriting of allocated memory boundaries. While these diagnostic features are not accessible through standard user interfaces or command-line interfaces, an attacker exploiting this vulnerability could potentially induce a Denial of Service by crashing the routing daemon or even achieve arbitrary code execution, thereby compromising the security of the affected system.

Affected Version(s)

Fabric OS 0 < 10.0.1

References

CVSS V4

Score:
6.8
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.