VYPR
High severity7.3NVD Advisory· Published Aug 13, 2026· Updated Aug 17, 2026

CVE-2026-18511

CVE-2026-18511

Description

IBM i 7.6, 7.5, 7.4, and 7.3 could allow a local authenticated attacker to generate a stack-based buffer overflow in the Native IBM i JSSE provider, caused by improper bounds checking during TLS session establishment. A local attacker could overflow a fixed-length buffer and execute arbitrary code on the system or cause the JVM process to crash.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

6
  • IBM/I5 versions
    cpe:2.3:a:ibm:i:7.3:*:*:*:*:*:*:*+ 4 more
    • cpe:2.3:a:ibm:i:7.3:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:i:7.4:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:i:7.5:*:*:*:*:*:*:*
    • cpe:2.3:a:ibm:i:7.6:*:*:*:*:*:*:*
    • (no CPE)range: 7.6, 7.5, 7.4, and 7.3
  • Range: 7.6, 7.5, 7.4, and 7.3

Patches

Vulnerability mechanics

References

1

News mentions

1