Back

HIGH

IBM Db2 Mirror for i is affected by multiple vulnerabilities

Published Aug 14, 2026

Description

IBM Db2 Mirror for i 7.4, 7.5, and 7.6 could allow a remote authenticated attacker to obtain sensitive information due to improper limitation of a pathname to a restricted directory.

Affected products

Remediation

Vendor solution

IBM strongly recommends addressing the vulnerability now.

IBM i Release

5770-DBM PTF Numbers

PTF Download Link

7.4

SJ10947

https://www.ibm.com/mysupport/s/fix-information?legacy=SJ10947

7.5

SJ10961

https://www.ibm.com/mysupport/s/fix-information?legacy=SJ10961

7.6

SJ10948

https://www.ibm.com/mysupport/s/fix-information?legacy=SJ10948

https://www.ibm.com/support/fixcentral

Metrics

Weaknesses (1)

References (1)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner ibm
Published Aug 14, 2026
Updated Aug 17, 2026
Reserved Aug 1, 2026
CISA Vulnrichment
Updated Aug 17, 2026
NVD
Status Analyzed
Modified Aug 21, 2026
Red Hat
Severity n/a
Public date n/a