Integer Underflow Vulnerability in IBM i Products
CVE-2026-18102

3.5LOW

Key Information:

Vendor

IBM

Status
Vendor
CVE Published:
19 August 2026

What is CVE-2026-18102?

An integer underflow vulnerability has been identified in IBM i versions 7.6, 7.5, 7.4, and 7.3. This flaw could allow a remote authenticated attacker to manipulate adjacent memory by exploiting flaws in the bounds checking mechanism. As a result, this could lead to unauthorized actions within the system, compromising its stability and security. It is crucial for users to apply the available patches to mitigate the risks associated with this vulnerability.

Affected Version(s)

i 7.6

i 7.5

i 7.4

References

CVSS V3.1

Score:
3.5
Severity:
LOW
Confidentiality:
None
Integrity:
Low
Availability:
None
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.