Executive brief
IBM AIX and PowerVM VIOS are operating systems used to run critical business applications in enterprise environments. A local attacker with login access could trigger improper memory page table handling to crash the system, causing service downtime and disrupting business operations.
Technical details
The vulnerability exists in the memory page table configuration handling in IBM AIX 7.2, 7.3, and PowerVM VIOS 4.1. It allows a local attacker to cause a denial of service by exploiting improper handling of memory page table configurations. The attack requires local access and no elevated privileges. An attacker can trigger the flaw to crash the affected system. IBM has released security patches through service packs and fix packs to remediate this issue.
Affected products
- IBM AIX 7.2, 7.3
- IBM PowerVM VIOS 4.1
Timeline
- 2026-08-19: disclosed
- 2026-08-21: advisory: Security bulletin updated with additional installation instructions