CVE-2026-76457: Cisco NX-OS Software Security Hardening Release: October 2026 - Out-of-bounds Read Vulnerabilities
As part of Cisco's ongoing commitment to proactive security and product quality, the Cisco NX-OS engineering team has conducted a comprehensive internal security review. This review resulted in a software hardening release that addresses multiple internally discovered vulnerabilities. The vulnerabilities tracked by CVE-2026-76457 are related to out-of-bounds read issues that are grouped under the Common Weakness Enumeration (CWE) CWE-125.
Affected Software
Event History
Frequently Asked Questions
Does exploiting this issue require authentication or user interaction?
No. The CVSS vector indicates that exploitation is network-accessible, requires low attack complexity, and does not require privileges or user interaction.
What is the stated security impact?
The CVSS vector indicates a high availability impact, with no stated confidentiality or integrity impact. It also indicates that the impact scope can extend beyond the vulnerable component.
Was this vulnerability externally reported?
The affected issues were identified during Cisco NX-OS engineering's internal security review and are described as internally discovered.