CVE-2025-4663: Denial-of-Service (DoS) after Unusual or Exceptional Conditions vulnerability
An Improper Check for Unusual or Exceptional Conditions vulnerability in Brocade Fabric OS before 9.2.2.a could allow an authenticated, network-based attacker to cause a Denial-of-Service (DoS). The vulnerability is encountered when supportsave is invoked remotely, using ssh command or SANnav inline ssh, and the corresponding ssh session is terminated with Control C (^c ) before supportsave completion. This issue affects Brocade Fabric OS 9.0.0 through 9.2.2
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-4663?
CVE-2025-4663 is classified as a Denial-of-Service (DoS) vulnerability.
How do I fix CVE-2025-4663?
To mitigate CVE-2025-4663, upgrade Brocade Fabric OS to version 9.2.2.a or later.
Who is affected by CVE-2025-4663?
CVE-2025-4663 affects all versions of Brocade Fabric OS from 9.0.0 to 9.2.2.
Can CVE-2025-4663 be exploited remotely?
Yes, CVE-2025-4663 can be exploited by an authenticated, network-based attacker.
What action triggers the vulnerability in CVE-2025-4663?
The vulnerability in CVE-2025-4663 is triggered when the supportsave process is invoked remotely using SSH.