VYPR

Powervm Hypervisor

by IBM

CVEs (37)

  • CVE-2022-34331MedNov 11, 2022
    risk 0.36cvss 5.5epss 0.01

    After performing a sequence of Power FW950, FW1010 maintenance operations a SRIOV network adapter can be improperly configured leading to desired VEPA configuration being disabled. IBM X-Force ID: 229695.

  • CVE-2026-4937MedAug 19, 2026
    risk 0.34cvss 5.3epss 0.00

    IBM PowerVM Hypervisor FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 through FW950.H2 could allow a local attacker with administrative privileges to decrypt encrypted data due to certain hypervisor calls utilizing less entropy than requested.

  • CVE-2026-15961MedAug 19, 2026
    risk 0.34cvss 5.2epss 0.00

    IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 IBM PowerVM could allow a local attacker to obtain sensitive information or cause a denial of service due to improper control of format strings.

  • CVE-2023-46183MedFeb 6, 2024
    risk 0.34cvss 5.3epss 0.00

    IBM PowerVM Hypervisor FW950.00 through FW950.90, FW1020.00 through FW1020.40, and FW1030.00 through FW1030.30 could allow a system administrator to obtain sensitive partition information. IBM X-Force ID: 269695.

  • CVE-2023-33851MedFeb 4, 2024
    risk 0.34cvss 5.3epss 0.00

    IBM PowerVM Hypervisor FW950.00 through FW950.90, FW1020.00 through FW1020.40, and FW1030.00 through FW1030.30 could reveal sensitive partition data to a system administrator. IBM X-Force ID: 257135.

  • CVE-2026-17504MedSep 24, 2026
    risk 0.33cvss 5.1epss 0.00

    IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a vulnerability in the partition firmware runtime. An attacker with root access to a partition can send a specially crafted…

  • CVE-2026-17503MedSep 24, 2026
    risk 0.33cvss 5.1epss 0.00

    IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a vulnerability in the partition firmware runtime boot configuration. An attacker with root access to a partition can…

  • CVE-2026-17413MedSep 24, 2026
    risk 0.33cvss 5.1epss 0.00

    IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a vulnerability in the RTAS firmware-to-OS interface. An attacker with administrator-level (root) access to a logical…

  • CVE-2024-41781MedNov 22, 2024
    risk 0.33cvss 5.1epss 0.00

    IBM PowerVM Platform KeyStore (IBM PowerVM Hypervisor FW950.00 through FW950.90, FW1030.00 through FW1030.60, FW1050.00 through FW1050.20, and FW1060.00 through FW1060.10 functionality can be compromised if an attacker gains service access to the HMC. An attacker that gains…

  • CVE-2025-0986MedMar 28, 2025
    risk 0.29cvss 4.5epss 0.00

    IBM PowerVM Hypervisor FW1050.00 through FW1050.30 and FW1060.00 through FW1060.20 could allow a local user, under certain Linux processor combability mode configurations, to cause undetected data loss or errors when performing gzip compression using HW acceleration.

  • CVE-2021-20505MedJul 29, 2021
    risk 0.29cvss 4.4epss 0.01

    The PowerVM Logical Partition Mobility(LPM) (PowerVM Hypervisor FW920, FW930, FW940, and FW950) encryption key exchange protocol can be compromised. If an attacker has the ability to capture encrypted LPM network traffic and is able to gain service access to the FSP they can use…

  • CVE-2026-18870MedSep 24, 2026
    risk 0.28cvss 4.3epss 0.00

    IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 could allow a remote attacker to obtain sensitive information due to an out-of-bounds read.

  • CVE-2026-17511LowSep 24, 2026
    risk 0.22cvss 3.4epss 0.00

    IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, FW1060.00 through FW1060.81, and FW950.00 through FW950.H3 is affected by a vulnerability in the partition resource dump interface. An attacker with authenticated administrator-level access to the…

  • CVE-2026-19492LowSep 24, 2026
    risk 0.21cvss 3.2epss 0.00

    IBM PowerVM Hypervisor FW1120.00 through FW1120.01, FW1110.00 through FW1110.31, and FW1060.00 through FW1060.81 is affected by a vulnerability in a hypervisor call interface. An attacker with root access to a guest partition can read a limited amount of hypervisor memory,…

  • CVE-2025-36194LowFeb 2, 2026
    risk 0.18cvss 2.8epss 0.00

    IBM PowerVM Hypervisor FW1110.00 through FW1110.03, FW1060.00 through FW1060.51, and FW950.00 through FW950.F0 may expose a limited amount of data to a peer partition in specific shared processor configurations during certain operations.

  • CVE-2026-11885HigJul 30, 2026
    risk 0.00cvss 8.4epss 0.00

    IBM PowerVM Hypervisor FW1110.00 through FW1110.20, FW1060.00 through FW1060.71, and FW950.00 through FW950.H1 A carefully crafted OS hypervisor call can cause the PowerVM hypervisor to crash or compromise OS memory integrity.

  • CVE-2026-4932MedJul 28, 2026
    risk 0.00cvss 4.2epss 0.00

    IBM PowerVM Hypervisor FW1110.00 through FW1110.20, and FW1060.00 through FW1060.71 could allow an attacker with physical access to the Transparent Memory Encryption (TME) hardware to decrypt encrypted memory due to insufficient cryptographic entropy.

Page 2 of 2