Description
A stack-based buffer overflow vulnerability exists in the Internet Key Exchange (IKEv2) protocol handler on Brocade Fabric OS versions before 10.0.1. The vulnerability occurs when processing initial IKE key exchange requests on extension switches or blades running IPsec-enabled Fibre Channel over IP (FCIP) circuits. An unauthenticated remote attacker can exploit this vulnerability by sending a single, specifically crafted UDP packet (Port 500) containing an oversized Nonce payload. Successful exploitation results in a denial of service (data-plane process crash)
Published: 2026-10-08
Score: 6 Medium
EPSS: n/a
KEV: No
Impact: Denial of Service via remote buffer overflow
Action: Apply Patch
AI Analysis

Impact

A stack-based buffer overflow exists in the Internet Key Exchange (IKEv2) protocol handler of Brocade Fabric OS versions prior to 10.0.1. The overflow is triggered when processing an oversized Nonce payload in an initial IKEv2 key exchange request, which is sent over UDP port 500. An unauthenticated remote attacker can send a single crafted packet to an extension switch or blade running IPsec-enabled Fibre Channel over IP circuits, causing the data‑plane process to crash and resulting in a denial of service. The vulnerability does not directly disclose sensitive data or enable privilege escalation, but it completely disrupts the data‑plane operation of the device.

Affected Systems

All Brocade Fabric OS devices running versions earlier than 10.0.1 are affected, including extension switches and blades that handle IPsec-enabled FCIP circuits.

Risk and Exploitability

The CVSS score is 6.0, indicating a moderate impact. EPSS data is not available, and the vulnerability is not listed in the CISA KEV catalog. The attack vector is remote, requiring an unauthenticated UDP packet sent to port 500. While the exploit condition only requires the presence of an IKEv2‑enabled FCIP circuit, any successful exploitation leads to a crash of the data‑plane process. No publicly available exploit code is documented at this time, but the simple nature of the attack vector and the lack of authentication suggest that it could be used in a distributed denial‑of‑service scenario if the attacker gains network visibility to the target devices.

Generated by OpenCVE AI on October 8, 2026 at 04:52 UTC.

Remediation

Vendor Solution

Security update is provided in Brocade Fabric OS 10.0.1


OpenCVE Recommended Actions

  • Apply the Brocade Fabric OS security update to version 10.0.1 or higher on all affected switches and blades.
  • Reboot or restart the data‑plane process after the update to ensure the crash condition is cleared.
  • Block UDP port 500 traffic or temporarily disable IKEv2 on FCIP circuits until the patch can be applied.

Generated by OpenCVE AI on October 8, 2026 at 04:52 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 08 Oct 2026 05:15:00 +0000

Type Values Removed Values Added
Title Remote Buffer Overflow in Brocade Fabric OS IKEv2 Handler Causes Data‑Plane Crash

Thu, 08 Oct 2026 04:45:00 +0000

Type Values Removed Values Added
First Time appeared Brocade
Brocade fabric Os
Vendors & Products Brocade
Brocade fabric Os

Thu, 08 Oct 2026 03:15:00 +0000

Type Values Removed Values Added
Description A stack-based buffer overflow vulnerability exists in the Internet Key Exchange (IKEv2) protocol handler on Brocade Fabric OS versions before 10.0.1. The vulnerability occurs when processing initial IKE key exchange requests on extension switches or blades running IPsec-enabled Fibre Channel over IP (FCIP) circuits. An unauthenticated remote attacker can exploit this vulnerability by sending a single, specifically crafted UDP packet (Port 500) containing an oversized Nonce payload. Successful exploitation results in a denial of service (data-plane process crash)
Weaknesses CWE-121
References
Metrics cvssV4_0

{'score': 6, 'vector': 'CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N'}


Subscriptions

Brocade Fabric Os
cve-icon MITRE

Status: PUBLISHED

Assigner: brocade

Published:

Updated: 2026-10-08T02:58:44.774Z

Reserved: 2026-09-08T22:51:12.106Z

Link: CVE-2026-87665

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-10-08T03:16:35.960

Modified: 2026-10-08T03:16:35.960

Link: CVE-2026-87665

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-08T05:00:15Z

Weaknesses
  • CWE-121

    Stack-based Buffer Overflow