Where
-Infinity
0
First published (updated )
Advisory
IBM-7286094
Severity
8.8
Integer Underflow
AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to corrupt memory due to an integer underflow.

1 / 2
Source: MITRE
First published (updated )
First published (updated )
Advisory
IBM-7286186
Severity
8.1
AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:H/A:L

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to manipulate database transactions due to improper authorization in the DDM target dispatcher.

1 / 2
Source: MITRE
First published (updated )
Severity
9.8
AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to gain unauthorized access due to improper validation of client-supplied authentication parameters.

1 / 2
Source: MITRE
First published (updated )
First published (updated )
Advisory
IBM-7286093
Severity
7.5
AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to improper validation of the prefix length in ICMPv6 Router Advertisements.

1 / 2
Source: MITRE
First published (updated )
First published (updated )
Advisory
IBM-7283295
First published (updated )
Advisory
IBM-7285940
Severity
6.5
Infoleak
AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N

IBM i 7.6, 7.5, 7.4, and 7.3 could allow an authenticated attacker to obtain sensitive information in PASE. An attacker could exploit this vulnerability to access information about process they shouldn't be permitted to access.

1 / 2
Source: MITRE

Remedy

IBM i Release5770-999  PTF Number(s)PTF Download Link(s)7.6MJ11365  https://www.ibm.com/mysupport/s/fix-information?legacy=MJ11365 7.5MJ11364 https://www.ibm.com/mysupport/s/fix-information?legacy=MJ11364 7.4MJ11363 https://www.ibm.com/mysupport/s/fix-information?legacy=MJ11363 7.3MJ11362 https://www.ibm.com/mysupport/s/fix-information?legacy=MJ11362 IBM recommends users running unsupported versions of affected products upgrade to a supported and fixed version of affected products.
First published (updated )
First published (updated )
Advisory
IBM-7285938
Severity
5.5
AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

IBM i 7.6, and 7.5 could allow a local authenticated attacker to obtain information from a privileged file when using SSH.

1 / 2
Source: MITRE
First published (updated )
First published (updated )
Advisory
IBM-7285937
Severity
6.5
Integer Overflow
AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service due to an integer overflow.

1 / 2
Source: MITRE
First published (updated )
First published (updated )
Advisory
IBM-7285939
Severity
5.3
Buffer Overflow
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service due to a buffer overflow.

1 / 2
Source: MITRE
First published (updated )
Severity
5.3
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to cause a denial of service due to an off-by-one write in the LPD queue name parser.

1 / 2
Source: MITRE
First published (updated )
First published (updated )
Advisory
IBM-7285848
Severity
4.3
AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N

IBM i 7.6, 7.5, and 7.4 could allow a remote authenticated attacker to modify certain system messages due to improper authorization.

1 / 2
Source: MITRE
First published (updated )
First published (updated )
Advisory
IBM-7285844
Severity
4.4
OS Command Injection
AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to inject parameters into a CL command due to improper neutralization of special elements.

1 / 2
Source: MITRE
First published (updated )
Severity
6.5
AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service due to a memory leak.

1 / 2
Source: MITRE

Remedy

IBM i Release5770-SS1 PTF Number(s)PTF Download Link(s)7.6SJ11305 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11305 7.5SJ11306 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11306 7.4SJ11307 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11307 7.3SJ11308 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11308 IBM recommends users running unsupported versions of affected products upgrade to a supported and fixed version of affected products.
First published (updated )
Severity
5.5
Buffer Overflow
AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to cause a denial of service due to a stack-based buffer overflow.

1 / 2
Source: MITRE
First published (updated )
Severity
4.4
OS Command Injection
AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:L

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

1 / 2
Source: MITRE
First published (updated )
Severity
6.5
Buffer Overflow
AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service due to a stack-based buffer overflow.

1 / 2
Source: MITRE
First published (updated )
Severity
5.4
AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to bypass security restrictions due to predictable server seeds.

1 / 2
Source: MITRE
First published (updated )
Severity
6.5
Null Pointer Dereference
AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to cause a denial of service due to a NULL pointer dereference.

1 / 2
Source: MITRE
First published (updated )
Severity
7.8
OS Command Injection
AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local attacker to execute arbitrary commands due to improper neutralization of special elements used in an OS command.

1 / 2
Source: MITRE
First published (updated )
Severity
9.1
Buffer Overflow
AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote attacker to cause a denial of service and compromise integrity due to a buffer overflow.

1 / 2
Source: MITRE

Remedy

IBM i Release5770-SS1  PTF Number(s)PTF Download Link(s)7.6SJ11320 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11320 7.5SJ11319 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11319 7.4SJ11318 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11318 7.3SJ11317 https://www.ibm.com/mysupport/s/fix-information?legacy=SJ11317 IBM recommends users running unsupported versions of affected products upgrade to a supported and fixed version of affected products.
First published (updated )
Severity
4.9
AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:N

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a remote authenticated attacker to obtain sensitive information due to the use of hardcoded cryptographic constants to obfuscate encryption keys.

1 / 2
Source: MITRE
First published (updated )

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203