CVE-2026-16855: Buffer Overflow
Published Aug 15, 2026
·Updated
AIX could allow a local attacker to cause a denial of service due to a heap buffer overflow.
Affected Software
3 affected components
IBM AIX<=7.2
IBM AIX<=7.3
IBM PowerVM VIOS<=4.1
Event History
Aug 15, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The issue is described as locally exploitable, so the attacker needs local access to an affected IBM AIX or IBM PowerVM VIOS system.
2
Which systems should be considered exposed?
Systems running IBM AIX or IBM PowerVM VIOS should be assessed, particularly where untrusted or less-trusted users can obtain local access.