CVE-2026-16660: IBM Db2 Mirror for i is affected by multiple vulnerabilities [, , ]
IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote attacker to cause a denial of service due to an out-of-bounds read.
Other sources
IBM Db2 Mirror for i could allow a remote attacker to cause a denial of service due to an out-of-bounds read.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Db2 Mirror for ito a version that resolves this vulnerability.Patch SJ11151 - Upgrade
Upgrade
IBM Db2 Mirror for ito a version that resolves this vulnerability.Patch SJ11152 - Upgrade
Upgrade
IBM Db2 Mirror for ito a version that resolves this vulnerability.Patch SJ11153 - Upgrade
Upgrade
IBM Db2 Mirror for ito a version that resolves this vulnerability.Patch SJ11193 - Upgrade
Upgrade
IBM Db2 Mirror for ito a version that resolves this vulnerability.Patch SJ11194 - Upgrade
Upgrade
IBM Db2 Mirror for ito a version that resolves this vulnerability.Patch SJ11195 - Upgrade
Upgrade
IBM Db2 Mirror for ito a version that resolves this vulnerability.Patch SJ11205 - Upgrade
Upgrade
IBM Db2 Mirror for ito a version that resolves this vulnerability.Patch SJ11206 - Upgrade
Upgrade
IBM Db2 Mirror for ito a version that resolves this vulnerability.Patch SJ11207 - Operational
Address the vulnerability now by applying the IBM Db2 Mirror for i PTFs (SJ11151, SJ11152, SJ11153, SJ11193, SJ11194, SJ11195, SJ11205, SJ11206, SJ11207) as appropriate for your IBM i release (7.4, 7.5, 7.6).
Event History
Frequently Asked Questions
What level of access does an attacker need to exploit this issue?
The issue is described as exploitable by a remote attacker. The provided information does not specify whether authentication, network reachability, or any particular service configuration is required.
What is the expected impact of successful exploitation?
Successful exploitation could cause a denial of service through an out-of-bounds read. No information is provided about confidentiality or integrity impact.