{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/aix-7.3/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":[],"_cs_cves":[{"cvss":7.5,"id":"CVE-2026-19446"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["AIX 7.2","AIX 7.3","PowerVM VIOS 4.1"],"_cs_severities":["low"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["IBM"],"content_html":"\u003cp\u003eIBM AIX versions 7.2 and 7.3, along with IBM PowerVM VIOS version 4.1, are affected by a high-severity vulnerability identified as CVE-2026-19446. This vulnerability is classified as an uncontrolled resource consumption flaw (CWE-400). A remote, unauthenticated attacker can exploit this weakness by transmitting a specifically crafted UDP packet to a reachable RPC service on the target system.\u003c/p\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability results in complete system unavailability. Once the RPC service processes the malicious packet, the affected system enters a state where it can no longer function, necessitating a manual restart of the Logical Partition (LPAR) to restore normal operations. This flaw poses a significant availability risk to environments relying on these IBM infrastructure components. Given the nature of RPC services, defenders should prioritize isolating management interfaces and limiting access to RPC-related ports to authorized internal segments to mitigate the risk of exploitation.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of CVE-2026-19446 leads to a complete denial-of-service on the affected AIX or PowerVM VIOS instance. Because the crash forces an LPAR restart, organizations face operational disruption, potential data loss for unsaved processes, and the need for manual administrative intervention to restore service availability. This impact is significant for enterprise environments that rely on Power Systems for critical workloads.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cul\u003e\n\u003cli\u003eApply the security patches provided by IBM in the advisory linked below to all affected AIX and PowerVM VIOS instances immediately.\u003c/li\u003e\n\u003cli\u003eReview network access controls to restrict access to RPC services, ensuring they are not reachable from untrusted or public-facing network segments.\u003c/li\u003e\n\u003cli\u003eMonitor system logs and LPAR status for unexpected restarts or service outages that may indicate an exploitation attempt.\u003c/li\u003e\n\u003cli\u003eDeploy network-based monitoring to detect and alert on anomalous or high-volume UDP traffic directed toward RPC service ports on critical IBM infrastructure.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-08-20T23:25:24Z","date_published":"2026-08-20T23:25:24Z","id":"https://feed.craftedsignal.io/briefs/2026-08-ibm-aix-rpc-dos/","summary":"IBM AIX and PowerVM VIOS contain a remote, unauthenticated denial-of-service vulnerability (CVE-2026-19446) triggered by sending a crafted UDP packet to an RPC service, resulting in system unavailability.","title":"Uncontrolled Resource Consumption Vulnerability in IBM AIX and PowerVM VIOS","url":"https://feed.craftedsignal.io/briefs/2026-08-ibm-aix-rpc-dos/"}],"language":"en","title":"CraftedSignal Threat Feed - AIX 7.3","version":"https://jsonfeed.org/version/1.1"}