Impact
An attacker can trigger a buffer overflow in the line printer daemon of IBM i systems, which can lead to a service restart and temporary denial of service. The overflow occurs when handling specific print requests, allowing the attacker to exhaust system resources. This flaw does not provide direct code execution or data disclosure.
Affected Systems
The vulnerability affects IBM i releases 7.6, 7.5, 7.4, and 7.3. Patches are available through IBM’s PTFs ’SJ11300’ for 7.6, ’SJ11301’ for 7.5, ’SJ11302’ for 7.4, and ’SJ11303’ for 7.3, all bundled in the IBM i Release5770‑TC1 fix set.
Risk and Exploitability
The CVSS score of 5.3 indicates a moderate severity. EPSS data is not available, and the flaw is not listed in the CISA KEV catalog, suggesting that widespread exploitation is unlikely pending a vulnerability disclosure. Nonetheless, remote exploitation is possible via the printer daemon service, and any attacker who can reach the affected host can force a reboot or inhibit I/O, causing disruption.
OpenCVE Enrichment