Description
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities.

The vulnerabilities tracked by CVE-2026-76467 are related to issues concerning improper control of a resource through its lifetime that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-664.
Published: 2026-10-07
Score: 7.5 High
EPSS: n/a
KEV: No
Impact: Denial of Service due to improper resource lifetime control
Action: Immediate Patch
AI Analysis

Impact

The CVE describes an improper control of a resource through its lifetime, falling under the Common Weakness Enumeration Pillar CWE-664. This weakness can allow an attacker to trigger resource exhaustion or denial of service by prematurely freeing, over-allocating, or mismanaging critical system resources, potentially leading to service degradation or crash.

Affected Systems

Affected products include Cisco Campus Gateway Software, Cisco Meraki MR Wireless Access Points Software, Cisco Meraki MV Firmware, and Cisco Meraki MX Firmware. No specific version information is provided in the advisory, so all firmware and software releases of these products may be impacted until a hardened release is applied.

Risk and Exploitability

The vulnerability carries a CVSS score of 7.5, indicating a high severity level. No EPSS score is available, and the vulnerability is not listed in the CISA KEV catalog, implying a lower probability of widespread exploitation based on current data. The likely attack vector is inferred to be local or remote access to the device or software, depending on the configuration of the Meraki environment; however, the description does not explicitly detail the path of exploitation.

Generated by OpenCVE AI on October 7, 2026 at 18:00 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Apply the Cisco Meraki hardening release that fixes the resource lifetime management issue
  • Restrict privileged access to the affected devices to reduce the risk of intentional resource exhaustion attacks
  • Enable monitoring of system resource usage and log anomalies after the patch is deployed

Generated by OpenCVE AI on October 7, 2026 at 18:00 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 07 Oct 2026 16:30:00 +0000

Type Values Removed Values Added
Description As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco networking engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76467 are related to issues concerning improper control of a resource through its lifetime that are grouped under the Common Weakness Enumeration (CWE) Pillar CWE-664.
Title Cisco Meraki Software Hardening Release - Resource Lifetime Management Vulnerabilities
Weaknesses CWE-664
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: cisco

Published:

Updated: 2026-10-07T16:19:47.709Z

Reserved: 2026-08-19T12:02:03.638Z

Link: CVE-2026-76467

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-10-07T17:16:59.503

Modified: 2026-10-07T17:16:59.503

Link: CVE-2026-76467

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-07T18:15:14Z

Weaknesses
  • CWE-664

    Improper Control of a Resource Through its Lifetime