{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/aix-7.2-7.3/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":9.1,"id":"CVE-2026-15065"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["AIX (7.2, 7.3)","PowerVM VIOS (4.1)"],"_cs_severities":["high"],"_cs_tags":["vulnerability","cve-2026-15065","ibm","security-bypass","denial-of-service","aix"],"_cs_type":"advisory","_cs_vendors":["IBM"],"content_html":"\u003cp\u003eIBM has disclosed a critical security vulnerability (CVE-2026-15065) affecting IBM AIX versions 7.2 and 7.3, and IBM PowerVM VIOS version 4.1. The vulnerability originates from the inclusion of intermediate Certificate Authority (CA) private keys within a publicly available update file. Exposure of these keys (CWE-312) poses a significant risk to the integrity of systems relying on trust chains derived from these certificates. A remote attacker who obtains these keys could potentially impersonate legitimate services, bypass security restrictions, and perform unauthorized actions within the affected environment. The vulnerability has been assigned a CVSS v3.1 base score of 9.1, reflecting the critical impact of leaked cryptographic infrastructure credentials.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation allows remote attackers to perform unauthorized actions by leveraging the compromised intermediate CA private keys. This can lead to man-in-the-middle attacks, unauthorized access to secure communications, or the bypass of authentication controls that rely on the affected certificate chain. The scope of impact includes any environment utilizing these versions of AIX or PowerVM VIOS for enterprise-level identity or security services.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eReview the official IBM support advisory at \u003ca href=\"https://www.ibm.com/support/pages/node/7283858\"\u003ehttps://www.ibm.com/support/pages/node/7283858\u003c/a\u003e for remediation guidance and patch availability.\u003c/li\u003e\n\u003cli\u003eApply available security patches to all affected AIX 7.2, 7.3, and PowerVM VIOS 4.1 instances immediately.\u003c/li\u003e\n\u003cli\u003eConduct a cryptographic audit of infrastructure utilizing these systems to determine if any certificate chains anchored to the exposed CA were compromised or used to sign potentially malicious traffic.\u003c/li\u003e\n\u003cli\u003eRevoke and reissue any certificates issued by the compromised intermediate CA if signs of unauthorized use are identified.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-19T16:38:24Z","date_published":"2026-08-19T16:37:59Z","id":"https://feed.craftedsignal.io/briefs/2026-08-ibm-aix-cve-2026-15065/","summary":"IBM AIX 7.2, 7.3, and PowerVM VIOS 4.1 contain intermediate CA private keys within publicly available update files, potentially allowing remote attackers to bypass security restrictions.","title":"Exposure of Certificate Authority Private Keys in IBM AIX and PowerVM VIOS","url":"https://feed.craftedsignal.io/briefs/2026-08-ibm-aix-cve-2026-15065/"}],"language":"en","title":"CraftedSignal Threat Feed - AIX (7.2, 7.3)","version":"https://jsonfeed.org/version/1.1"}