IBM i Denial-of-Service Vulnerability via Failed Authentication Connections

Vulnerability

A denial-of-service vulnerability has been identified in IBM i version 7.6. This issue allows remote attackers to cause a denial of service by exploiting failed authentication connections, which leads to improper resource allocation.

Impact

Exploitation of this vulnerability can cause a denial-of-service condition, disrupting normal operations by overwhelming the system with failed authentication attempts.

Remediation

Users are advised to upgrade to version 7.6 and apply the PTF number SJ09012, available through the IBM My Support portal. For unsupported versions, upgrade to a supported version.

Added: Mar 17, 2026, 10:28 PM
Updated: Mar 17, 2026, 10:28 PM

Vulnerability Rating

Custom Algorithm
spread
4.5
impact
2.5
exploitability
7.0
remediation
7.7
relevance
4.0
threat
0.0
urgency
2.9
incentive
4.2

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.