CVE-2026-17223
8.8IBM · i
IBM i contains an out-of-bounds write vulnerability that could be exploited by an authenticated attacker to execute arbitrary code or cause a system crash.
Executive summary
An out-of-bounds write vulnerability in IBM i versions 7.3 through 7.6 could allow an authenticated attacker to achieve code execution or disrupt system operations.
Vulnerability
This vulnerability, identified as CWE-787, occurs within the IBM i Host Servers. It enables a low privileged authenticated attacker to perform an out-of-bounds write operation, which can lead to memory corruption and potential arbitrary code execution.
Business impact
The CVSS score of 8.8 highlights the critical nature of this flaw. If exploited, an attacker could gain unauthorized execution capability, potentially leading to a total compromise of the affected server. Such an event would result in significant business disruption, loss of data integrity, and potential unauthorized access to sensitive business records stored within the IBM i ecosystem.
Remediation
Immediate Action: Apply the required PTFs immediately to address the Host Server vulnerability: PTF SJ11101 or SJ11097 for 7.6, SJ11102 or SJ11098 for 7.5, and SJ11103 or SJ11099 for 7.4.
Proactive Monitoring: Monitor server logs for abnormal crash events or signs of memory-related errors that may indicate an exploitation attempt.
Compensating Controls: Utilize network segmentation to limit access to IBM i Host Servers to only authorized personnel and trusted internal systems.
Exploitation status
Public Exploit Available: No
Analyst recommendation
Given the high impact of memory corruption vulnerabilities, immediate remediation is required. Administrators should verify their current patch level and apply the vendor-recommended PTFs to ensure the ongoing security and stability of the IBM i environment.