CVE-2026-19449

8.8

IBM · AIX

A security vulnerability in IBM AIX 7.2, 7.3 and PowerVM VIOS 4.1 allows a local authenticated attacker to achieve full system compromise.

Executive summary

A critical vulnerability in IBM AIX and PowerVM VIOS allows local authenticated users to escalate privileges, potentially leading to a full system compromise.

Vulnerability

This vulnerability allows an authenticated local attacker with low privileges to execute arbitrary code or commands with elevated system privileges. The attack vector is local, requiring the user to have an active session on the affected system.

Business impact

Exploitation of this flaw enables a local user to gain unauthorized administrative control over the AIX operating system or the PowerVM VIOS layer. With a CVSS score of 8.8, this represents a significant threat to confidentiality, integrity, and availability, as an attacker could manipulate system configurations, access sensitive data, or disrupt critical business operations.

Remediation

Immediate Action: Apply the specific APAR fixes provided by IBM for your respective AIX or VIOS version, such as IJ59566 for AIX 7.2.5 or IJ59565 for VIOS 4.1.0.

Proactive Monitoring: Audit user access logs to identify unauthorized attempts to escalate privileges or unexpected execution of administrative commands by low-privileged accounts.

Compensating Controls: Enforce strict access control policies and adhere to the principle of least privilege to ensure that only authorized personnel have local access to sensitive AIX systems.

Exploitation status

Public Exploit Available: No

Analyst recommendation

Given the severity of this vulnerability, immediate application of the vendor-provided APAR patches is essential. Organizations should prioritize updating all affected AIX and VIOS environments to maintain the security and stability of their enterprise infrastructure.

More IBM CVEs