Junglewise Threat Intelligence

CVE-2026-17170: IBM AIX and PowerVM VIOS denial of service via improper allocation validation

CVE-2026-17170 · Severity: high · CVSS 7.5 · Published 2026-08-20

Technologies: IBM Aix, IBM PowerVM VIOS. Vendors: IBM.

Executive brief

IBM AIX and PowerVM VIOS are core operating systems for IBM Power Systems servers used in enterprise environments. A remote attacker can trigger a denial of service condition by sending crafted network requests that exploit improper validation of memory allocation sizes, causing the system to crash or become unresponsive and disrupting business operations.

Affected products

  • IBM AIX 7.2, 7.3
  • IBM PowerVM VIOS 4.1

Timeline

  • 2026-08-20: disclosed

References

Related threats