Description
Bonjour Gateway in Extreme Networks IQ Engine before 10.6r1a, and through 10.6r4 before 10.6r5, has an ah_bgd buffer overflow via ah_event_send.
Published: 2026-09-14
Score: 8.8 High
EPSS: < 1% Very Low
KEV: No
Impact: Potential remote code execution via buffer overflow in Bonjour Gateway
Action: Immediate patch
AI Analysis

Impact

The vulnerability is a classic stack buffer overflow in the ah_bgd buffer triggered by the ah_event_send functionality. A crafted payload that corrupts the stack and potentially execute arbitrary code with the privileges of the IQ Engine process, thereby compromising confidentiality, integrity, and availability of the affected device. It is inferred that such code execution is possible based on the description of the overflow, though the exact payload capability is not detailed.

Affected Systems

Extreme Networks IQ Engine devices running versions before 10.6r5, including all editions from 10.6r1a through 10.6r4, are affected. The vulnerability resides in the Bonjour Gateway component of IQ Engine.

Risk and Exploitability

The CVSS score of 8.8 reflects a high severity vulnerability; the EPSS score of < 1% indicates a very low but non‑zero likelihood of exploitation. The flaw is not listed in CISA's KEV catalog. Based on the description, the likely attack vector is through network traffic directed at the Bonjour Gateway service, so any host exposed to that interface could be at risk.

Generated by OpenCVE AI on September 15, 2026 at 16:15 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade to Extreme Networks IQ Engine 10.6r5 or later to receive the fixed implementation of ah_event_send and eliminate the buffer overflow
  • If an upgrade cannot be performed immediately, disable the Bonjour Gateway service or block all inbound traffic to its port to prevent and network traffic for abnormal patterns or attempts to exploit ah_event_send, and apply additional access controls to isolate the IQ Engine from untrusted networks
  • Implement network segmentation or configure firewall rules to restrict access to the Bonjour Gateway port to trusted IPs only, ensuring that only internal or trusted hosts can reach the service

Generated by OpenCVE AI on September 15, 2026 at 16:15 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 16 Sep 2026 15:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 16:30:00 +0000

Type Values Removed Values Added
Title Buffer Overflow in Bonjour Gateway via ah_event_send in Extreme Networks IQ Engine

Mon, 14 Sep 2026 23:30:00 +0000

Type Values Removed Values Added
Title Bonjour Gateway Buffer Overflow in Extreme Networks IQ Engine

Mon, 14 Sep 2026 13:45:00 +0000

Type Values Removed Values Added
Title Bonjour Gateway Buffer Overflow in Extreme Networks IQ Engine

Mon, 14 Sep 2026 06:15:00 +0000

Type Values Removed Values Added
First Time appeared Extremenetworks
Extremenetworks iq Engine
Weaknesses CWE-121
CPEs cpe:2.3:a:extremenetworks:iq_engine:*:*:*:*:*:*:*:*
Vendors & Products Extremenetworks
Extremenetworks iq Engine
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H'}


Mon, 14 Sep 2026 06:00:00 +0000

Type Values Removed Values Added
Description Bonjour Gateway in Extreme Networks IQ Engine before 10.6r1a, and through 10.6r4 before 10.6r5, has an ah_bgd buffer overflow via ah_event_send.
References

Subscriptions

Extremenetworks Iq Engine
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-16T14:34:09.844Z

Reserved: 2023-10-20T00:00:00.000Z

Link: CVE-2023-46273

cve-icon Vulnrichment

Updated: 2026-09-16T14:34:05.558Z

cve-icon NVD

Status : Deferred

Published: 2026-09-14T06:16:54.647

Modified: 2026-09-22T20:00:03.713

Link: CVE-2023-46273

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-15T16:15:15Z

Weaknesses
  • CWE-121

    Stack-based Buffer Overflow