CVE-2025-36244: IBM Aix

Medium severity, CVSS 5.5. EPSS: 0.1% chance of exploitation in the next 30 days.

IBM AIX 7.2, 7.3, IBM VIOS 3.1, and 4.1, when configured to use Kerberos network authentication, could allow a local user to write to files on the system with root privileges due to improper initialization of critical variables.

Affected products

  • IBM Aix: version 7.2 only; version 7.3 only
  • IBM Vios: version 3.1 only; version 4.1 only

Published 2025-09-16. Last modified 2026-06-17.