AUGUST 14, 2026
Live Feed
Back to database
Case File

CVE-2026-18511

HIGH · CVSS 7.3 EPSS 0.22%

Source: NVD + CISA KEV + EPSS · Published 2026-08-13 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

IBM i versions 7.6, 7.5, 7.4, and 7.3 are vulnerable to a stack-based buffer overflow in the Native JSSE provider due to inadequate bounds checking during TLS session establishment. This vulnerability allows a local authenticated attacker to execute arbitrary code or crash the JVM process, posing a significant risk to system integrity. Organizations using these IBM i versions should prioritize patching to mitigate potential exploitation.

CVE
CVE-2026-18511
Severity
HIGH
CVSS
7.3
EPSS
0.22%

Original NVD Description

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to generate a stack-based buffer overflow in the Native IBM i JSSE provider, caused by improper bounds checking during TLS session establishment. A local attacker could overflow a fixed-length buffer and execute arbitrary code on the system or cause the JVM process to crash.