Denial of Service Vulnerability in IBM AIX and PowerVM Products
CVE-2026-16846
6.5MEDIUM
What is CVE-2026-16846?
A vulnerability has been identified in IBM AIX 7.2 and 7.3, as well as IBM PowerVM VIOS 4.1, which could be exploited by a remote attacker to trigger a denial of service. This vulnerability arises from a null pointer dereference, potentially leading to service disruptions. It is crucial for users to implement the necessary patches and advisories provided by IBM to safeguard their systems.
Affected Version(s)
AIX 7.2
AIX 7.3
PowerVM VIOS 4.1
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
CVE-2026-14970, CVE-2026-15061, CVE-2026-15078, CVE-2026-15065, CVE-2026-15068 were reported to IBM by Oneconsult AG (https://oneconsult.com/).