Skip to content
ibmCVE-2026-18104

IBM Db2 Mirror for i 7.6, 7.5, and 7.4 could allow a local attacker to obtain sensitive information due to the use of the AES Electronic Codebook (ECB) mode for encryption.

Low3.3CVE-2026-18104 · Published Sep 24, 2026

Source advisory

Affected versions

PackageAffectedFixed in
Db2 Mirror for i
Vendor
<= 7.6No fix yet
<= 7.5No fix yet
<= 7.4No fix yet
Details and references

IBM Db2 Mirror for i 7.6, 7.5, and 7.4 could allow a local attacker to obtain sensitive information due to the use of the AES Electronic Codebook (ECB) mode for encryption.

CVSS 3.1
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Severity from
no source yet
Weakness
CWE-327

More ibm advisories

All

Critical advisories by email

Wednesdays: the week’s critical and high advisories in the AI and data stack, with the fixed versions. Only in weeks that have some.

Double opt-in. Unsubscribe any time.