CVE-2026-17118: Use After Free
Published Aug 15, 2026
·Updated
AIX could allow a remote attacker to execute arbitrary code due to a use-after-free vulnerability.
Affected Software
3 affected components
IBM AIX<=7.2
IBM AIX<=7.3
IBM PowerVM VIOS<=4.1
Event History
Aug 15, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
Which IBM products should be included in the exposure assessment?
Assess IBM AIX and IBM PowerVM VIOS systems.
2
Is local access required for exploitation?
The vulnerability is described as remotely exploitable. The available information does not specify authentication requirements, the affected network service, or other prerequisites.
3
Can affected releases be identified from the available record?
No affected or fixed version information is provided. The IBM support reference should be consulted to determine whether deployed releases are affected and whether updates are available.