CVE-2025-1976: Broadcom Brocade Fabric OS Code Injection Vulnerability
Broadcom Brocade Fabric OS contains a code injection vulnerability that allows a local user with administrative privileges to execute arbitrary code with full root privileges.
Other sources
Brocade Fabric OS versions starting with 9.1.0 have root access removed, however, a local user with admin privilege can potentially execute arbitrary code with full root privileges on Fabric OS versions 9.1.0 through 9.1.1d6.
— NVD
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-1976?
CVE-2025-1976 is considered to have a high severity due to the potential for arbitrary code execution with root privileges.
How can I fix CVE-2025-1976?
To mitigate CVE-2025-1976, it is recommended to upgrade to Brocade Fabric OS version 9.1.1d7 or later.
Who is affected by CVE-2025-1976?
CVE-2025-1976 affects users with admin privileges on Brocade Fabric OS versions 9.1.0 to 9.1.1d6.
What are the risks associated with CVE-2025-1976?
The risks associated with CVE-2025-1976 include the possibility of unauthorized access and full control over the affected system.
Is there a workaround for CVE-2025-1976 while waiting for a patch?
There are no documented workarounds for CVE-2025-1976; upgrading to a patched version is the best solution.