PT-2025-28645 · Brocade · Brocade Fabric Os
Published
2025-06-10
·
Updated
2026-02-02
·
CVE-2025-4663
CVSS v4.0
6.8
Medium
| Vector | AV:A/AC:L/AT:N/PR:H/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions:
Brocade Fabric OS versions 9.0.0 through 9.2.2
Description:
The issue is related to an Improper Check for Unusual or Exceptional Conditions, which could allow an authenticated, network-based attacker to cause a Denial-of-Service (DoS). This occurs when
supportsave is invoked remotely using ssh command or SANnav inline ssh, and the corresponding ssh session is terminated with Control C (^c) before supportsave completion.Recommendations:
For Brocade Fabric OS versions 9.0.0 through 9.2.2, update to version 9.2.2.a or later to resolve the issue.
As a temporary workaround, consider avoiding the use of
supportsave invoked remotely until a patch is available.
Restrict access to ssh sessions to minimize the risk of exploitation.Fix
DoS
Improper Check for Exceptional Conditions
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Brocade Fabric Os