CVE-2026-17029: IBM i is Affected By Multiple Vulnerabilities in Java Secure Sockets Extension
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to execute arbitrary code due to an out-of-bounds write.
Other sources
IBM i could allow a local attacker to execute arbitrary code due to an out-of-bounds write.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM i 7.6 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.6Patch SJ11036 - Upgrade
Upgrade
IBM i 7.6 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.6Patch SJ11069 - Upgrade
Upgrade
IBM i 7.6 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.6Patch SJ11070 - Upgrade
Upgrade
IBM i 7.6 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.6Patch SJ11072 - Upgrade
Upgrade
IBM i 7.6 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.6Patch SJ11073 - Upgrade
Upgrade
IBM i 7.6 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.6Patch SJ11075 - Upgrade
Upgrade
IBM i 7.6 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.6Patch SJ11076 - Upgrade
Upgrade
IBM i 7.6 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.6Patch SJ11077 - Upgrade
Upgrade
IBM i 7.6 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.6Patch SJ11082 - Upgrade
Upgrade
IBM i 7.6 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.6Patch SJ11085 - Upgrade
Upgrade
IBM i 7.6 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.6Patch SJ11086 - Upgrade
Upgrade
IBM i 7.6 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.6Patch SJ11087 - Upgrade
Upgrade
IBM i 7.6 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.6Patch SJ11088 - Upgrade
Upgrade
IBM i 7.3 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.3Patch SJ11067 - Upgrade
Upgrade
IBM i 7.4 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.4Patch SJ11071 - Upgrade
Upgrade
IBM i 7.5 Release5770-JV1to a version that resolves this vulnerability.Fixed in 7.5Patch SJ11068
Event History
Frequently Asked Questions
What is the severity of CVE-2026-17029?
The severity of CVE-2026-17029 is rated high with a score of 8.8.
How do I fix CVE-2026-17029?
To fix CVE-2026-17029, update your IBM i system to the latest version that addresses this vulnerability.
What systems are affected by CVE-2026-17029?
CVE-2026-17029 affects IBM i versions 7.3, 7.4, 7.5, and 7.6.
What is the potential impact of CVE-2026-17029?
CVE-2026-17029 could allow a local attacker to execute arbitrary code due to an out-of-bounds write.
Is CVE-2026-17029 specific to IBM i?
Yes, CVE-2026-17029 specifically affects the IBM i operating system.