Buffer Overflow Risk in IBM AIX and PowerVM Products
CVE-2026-17120
5.3MEDIUM
What is CVE-2026-17120?
A vulnerability in IBM AIX versions 7.2 and 7.3, along with IBM PowerVM VIOS 4.1, has been identified that could enable remote attackers to exploit a buffer overflow condition. This flaw creates an opportunity for adversaries to initiate a denial of service, potentially rendering affected systems inoperable. Organizations utilizing these products should assess their systems and apply necessary patches to mitigate the risk.
Affected Version(s)
AIX 7.2
AIX 7.3
PowerVM VIOS 4.1
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Credit
CVE-2026-14970, CVE-2026-15061, CVE-2026-15078, CVE-2026-15065, CVE-2026-15068 were reported to IBM by Oneconsult AG (https://oneconsult.com/).