CVE-2026-16989

Summary

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to gain elevated privileges due to improper resolution of symbolic links.

Affected Software

VendorProductVersion RangeStatus
IBMAIX7.2affected
IBMAIX7.3affected
IBMPowerVM VIOS4.1affected

Weaknesses

  • CWE-59: CWE-59 Improper Link Resolution Before File Access ('Link Following')

References