A logic flaw in Java cache key handling object comparison handling could lead to improper identifier resolution when processing specific user account structures. The issue has been remediated by updating the internal comparison routines to ensure accurate object evaluation and prevent potential identity mismatch conditions.
PUBLISHED5.2CWE-1025
Logic flaw in SANnav Java cache key handling object comparison handling
Problem type
Affected products
Brocade
SANnav
before 3.0.1a - AFFECTED
References
GitHub Security Advisories
GHSA-6r5r-vffw-f5h8
A logic flaw in Java cache key handling object comparison handling could lead to improper...
https://github.com/advisories/GHSA-6r5r-vffw-f5h8A logic flaw in Java cache key handling object comparison handling could lead to improper identifier resolution when processing specific user account structures. The issue has been remediated by updating the internal comparison routines to ensure accurate object evaluation and prevent potential identity mismatch conditions.
JSON source
https://cveawg.mitre.org/api/cve/CVE-2026-14441Click to expand
{
"dataType": "CVE_RECORD",
"dataVersion": "5.2",
"cveMetadata": {
"cveId": "CVE-2026-14441",
"assignerOrgId": "87b297d7-335e-4844-9551-11b97995a791",
"assignerShortName": "brocade",
"dateUpdated": "2026-09-24T20:58:52.568Z",
"dateReserved": "2026-07-01T23:05:40.116Z",
"datePublished": "2026-09-24T20:58:52.568Z",
"state": "PUBLISHED"
},
"containers": {
"cna": {
"providerMetadata": {
"orgId": "87b297d7-335e-4844-9551-11b97995a791",
"shortName": "brocade",
"dateUpdated": "2026-09-24T20:58:52.568Z"
},
"title": "Logic flaw in SANnav Java cache key handling object comparison handling",
"descriptions": [
{
"lang": "en",
"value": "A logic flaw in Java cache key handling object comparison handling could lead to improper identifier resolution when processing specific user account structures. The issue has been remediated by updating the internal comparison routines to ensure accurate object evaluation and prevent potential identity mismatch conditions.",
"supportingMedia": [
{
"type": "text/html",
"base64": false,
"value": "A logic flaw in Java cache key handling object comparison handling could lead to improper identifier resolution when processing specific user account structures. The issue has been remediated by updating the internal comparison routines to ensure accurate object evaluation and prevent potential identity mismatch conditions."
}
]
}
],
"affected": [
{
"vendor": "Brocade",
"product": "SANnav",
"defaultStatus": "affected",
"versions": [
{
"version": "before 3.0.1a",
"status": "affected"
}
]
}
],
"problemTypes": [
{
"descriptions": [
{
"lang": "en",
"description": "CWE-1025: Comparison Using Wrong Factors",
"cweId": "CWE-1025",
"type": "CWE"
}
]
}
],
"references": [
{
"url": "https://support.broadcom.com/web/ecx/support-content-notification/-/external/content/SecurityAdvisories/0/39000"
}
],
"impacts": [
{
"capecId": "CAPEC-151",
"descriptions": [
{
"lang": "en",
"value": "CAPEC-151 Identity Spoofing"
}
]
}
],
"metrics": [
{
"format": "CVSS",
"scenarios": [
{
"lang": "en",
"value": "GENERAL"
}
]
}
],
"solutions": [
{
"lang": "en",
"value": "Brocade SANnav versions before 3.0.1a",
"supportingMedia": [
{
"type": "text/html",
"base64": false,
"value": "<span>Brocade SANnav versions before 3.0.1a</span>"
}
]
}
]
}
}
}