CVE-2026-16909: IBM AIX vulnerability
Published Aug 15, 2026
·Updated
AIX could allow a remote attacker to execute arbitrary code due to an off-by-one error in bounds checking.
Affected Software
3 affected components
IBM AIX<=7.2
IBM AIX<=7.3
IBM PowerVM VIOS<=4.1
Event History
Aug 15, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
Which products are identified as affected?
The affected software listed is IBM AIX and IBM PowerVM VIOS.
2
Does exploitation require local access to the affected system?
No. The vulnerability is described as allowing a remote attacker to execute arbitrary code.