CVE-2026-18680: IBM i vulnerability
Published Aug 12, 2026
·Updated
IBM i could allow an authenticated attacker to trigger stack corruption within the NetServer server job, caused by incomplete bounds checking. The attacker could exploit this vulnerability to cause a system level denial of service.
Affected Software
4 affected components
IBM i<=7.6
IBM i<=7.5
IBM i<=7.4
IBM i<=7.3
Event History
Aug 12, 2026
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2026-18680?
CVE-2026-18680 has been assigned a risk level of 40, indicating a significant security concern.
2
How do I fix CVE-2026-18680?
To mitigate CVE-2026-18680, ensure that you apply the latest security patches provided by IBM for the IBM i system.
3
Who is affected by CVE-2026-18680?
CVE-2026-18680 affects users of IBM i systems utilizing the NetServer server job.
4
What type of vulnerability is CVE-2026-18680?
CVE-2026-18680 is a stack corruption vulnerability resulting from incomplete bounds checking.
5
What could an attacker achieve by exploiting CVE-2026-18680?
An authenticated attacker could exploit CVE-2026-18680 to cause a system level denial of service.