CVE-2026-17171

Summary

IBM AIX 7.2, and 7.3 and IBM PowerVM VIOS 4.1 could allow a local attacker to overwrite arbitrary files due to improper resolution of symbolic links.

Affected Software

VendorProductVersion RangeStatus
IBMAIX7.2affected
IBMAIX7.3affected
IBMPowerVM VIOS4.1affected

Weaknesses

  • CWE-59: CWE-59 Improper Link Resolution Before File Access ('Link Following')

References