CVE-2026-17270: IBM i is Affected By Multiple Vulnerabilities in Debug Server
Published Aug 31, 2026
·Updated
IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to cause a denial of service due to a stack-based buffer overflow.
Other sources
IBM i could allow a local attacker to cause a denial of service due to a stack-based buffer overflow.
— IBM
Affected Software
4 affected components
IBM i<=7.6
IBM i<=7.5
IBM i<=7.4
IBM i<=7.3
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM ito a version that resolves this vulnerability.Fixed in 7.6Patch SJ11305 - Upgrade
Upgrade
IBM ito a version that resolves this vulnerability.Fixed in 7.5Patch SJ11306 - Upgrade
Upgrade
IBM ito a version that resolves this vulnerability.Fixed in 7.4Patch SJ11307 - Upgrade
Upgrade
IBM ito a version that resolves this vulnerability.Fixed in 7.3Patch SJ11308
Event History
Aug 31, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Sep 4, 2026
CVE Published
via MITRE·04:38 PM
Data Sourced
via MITRE·04:38 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·05:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What access does an attacker need to exploit this issue?
The issue requires local attacker access to an affected IBM i system.
2
What is the documented impact of successful exploitation?
Successful exploitation could cause a denial of service through a stack-based buffer overflow.