CVE-2026-17078: IBM i is Affected By A Denial of Service Vulnerability in DRDA / DDM []
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to resource exhaustion.
Other sources
IBM i could allow a remote attacker to cause a denial of service due to resource exhaustion.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM i 7.6to a version that resolves this vulnerability.Patch SJ10836 - Upgrade
Upgrade
IBM i 7.5to a version that resolves this vulnerability.Patch SJ10837 - Upgrade
Upgrade
IBM i 7.4to a version that resolves this vulnerability.Patch SJ10838 - Upgrade
Upgrade
IBM i 7.3to a version that resolves this vulnerability.Patch SJ10839
Event History
Frequently Asked Questions
What is the severity of CVE-2026-17078?
The severity of CVE-2026-17078 is rated as medium with a score of 5.3.
How does CVE-2026-17078 affect IBM i?
CVE-2026-17078 allows a remote attacker to cause a denial of service due to resource exhaustion on IBM i systems.
Which versions of IBM i are impacted by CVE-2026-17078?
IBM i versions 7.6, 7.5, 7.4, and 7.3 are impacted by CVE-2026-17078.
What type of vulnerability is CVE-2026-17078?
CVE-2026-17078 is a denial of service vulnerability.
How can organizations mitigate CVE-2026-17078?
Organizations should apply the latest patches and updates provided by IBM to mitigate CVE-2026-17078.