Monitor vulnerabilities like this one.
Sign up free to get alerted when software you use is affected.
9.8
CVE-2026-17206: IBM i 7.x Buffer Overflow Allows Remote Code Execution
CVE-2026-17206 · published 21 days ago
Summary
A buffer overflow vulnerability in IBM i 7.6, 7.5, 7.4, and 7.3 allows a remote attacker to potentially take control of your system. This is a serious issue because it could allow an attacker to execute any code they want on your system. To stay safe, it's essential to apply the latest security patches and updates to your IBM i system as soon as possible.
What to do
The CVE record does not list a fixed version. Check the vendor's site or the advisory links below - a fix may already be released.
Affected software
| Vendor | Product | Affected versions |
|---|---|---|
| ibm | i |
7.6 >= 7.3, <= 7.6 |
Original advisory text
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due to a buffer overflow.
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to execute arbitrary code due to a buffer overflow.
Severity
9.8
Critical
CVSS 3.1: 8.1 (NVD)
Exploitation
EPSS <1%
Type
CWE-787Out-of-bounds Write
Timeline
Published13 Aug 2026
Updated30 Aug 2026
First seen13 Aug 2026
Monitor software like this
Free during beta