---
cve: "CVE-2026-87665"
severity: "MEDIUM"
cvss: 6.0
epss: ""
vendor: "Brocade"
kev: false
exploited: false
published: "2026-10-08 03:16:35"
tags: [cve, security, medium]
source: tsecurity.de CVE-Dossier
exported: "2026-10-09T14:40:58+02:00"
---

# CVE-2026-87665

> 6.0 MEDIUM

## Beschreibung

A stack-based buffer overflow vulnerability exists in the Internet Key Exchange (IKEv2) protocol handler on Brocade Fabric OS versions before 10.0.1. The vulnerability occurs when processing initial IKE key exchange requests on extension switches or blades running IPsec-enabled Fibre Channel over IP (FCIP) circuits. An unauthenticated remote attacker can exploit this vulnerability by sending a single, specifically crafted UDP packet (Port 500) containing an oversized Nonce payload. Successful exploitation results in a denial of service (data-plane process crash)

## CNA-Record (Kanon, cvelistV5)

- CNA: **brocade**
- State: PUBLISHED
- Stand: 2026-10-08 02:58:44
- CNA-CVSS: **6.0** (`CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N`)

## CISA-Anreicherung (vulnrichment/ADP)

- CISA-SSVC (Coordinator, v2.0.3):
  - Exploitation: **none**
  - Automatable: **no**
  - Technical Impact: **partial**

## CVSS-Vektor

```
CVSS:4.0/AV:A/AC:L/AT:P/PR:N/UI:N/VC:N/VI:L/VA:H/SC:N/SI:N/SA:N
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Benachbart | warn |
| AC Komplexität | Gering | bad |
| PR Privilegien | Keine | bad |
| UI Interaktion | Keine | bad |

## BSI-Hinweise (deutsch)

- [Broadcom Fabric OS: Mehrere Schwachstellen](https://wid.cert-bund.de/portal/wid/sicherheitshinweis/WID-SEC-W-2026-3817) — _BSI-Einstufung: hoch_
  Ein Angreifer kann mehrere Schwachstellen in Broadcom Fabric OS ausnutzen, um seine Privilegien zu erhöhen, um einen Denial of Service Angriff durchzuführen, um Informationen offenzulegen, um Dateien zu manipulieren, um Sicherheitsvorkehrungen zu umgehen und um beliebigen Programmcode auszuführen.

## Referenzen

- <https://support.broadcom.com/external/content/SecurityAdvisories/0/39148>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/sicherheitsluecken/cve-2026-87665/) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI WID (CSAF)_
