IBM PowerVM Hypervisor denial of service
Published Sep 14, 2025
6.7
MEDIUMCVSS 3.1
EPSS 0.13%
Description
IBM PowerVM Hypervisor FW950.00 through FW950.E0, FW1050.00 through FW1050.50, and FW1060.00 through FW1060.40 could allow a local privileged user to cause a denial of service by issuing a specially crafted IBM i hypervisor call that would disclose memory contents or consume excessive memory resources.
Affected products
-
Affected
- ≥ FW1050.00, ≤ FW1050.50
- ≥ FW1060.00, ≤ FW1060.40
- ≥ FW950.00, ≤ FW950.E0
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| IBM | PowerVM Hypervisor | unaffected | Affected
|
Configuration 1
- ≥ FW950.00 · ≤ FW950.E0
Running on/with
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
Configuration 2
- ≥ FW1050.00 · ≤ FW1050.50
- ≥ FW1060.00 · ≤ FW1060.40
Running on/with
- n/a
Configuration 3
- ≥ FW1050.00 · ≤ FW1050.50
- ≥ FW1060.00 · ≤ FW1060.40
Running on/with
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
- n/a
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
Vendor solution
Customers with the products below should install 950.E1(950_182)/950.F0(950_192) or newer to remediate this vulnerability. Power 9
* IBM Power System L922 (9008-22L) * IBM Power System S922 (9009-22A, 9009-22G) * IBM Power System H922 (9223-22H, 9223-22S) * IBM Power System S914 (9009-41A, 9009-41G) * IBM Power System S924 (9009-42A, 9009-42G) * IBM Power System H924 (9223-42H, 9223-42S) * IBM Power System E950 (9040-MR9) * IBM Power System E980 (9080-M9S)
Customers with the products below should install FW1050.51(1050_095)/FW1050.60(1050_090), FW1060.41(1060_120), or newer to remediate this vulnerability. Power 10
* IBM Power System E1080 (9080-HEX)
Customers with the products below should install FW1050.51(1050_113)/FW1050.60(1050_108), FW1060.41(1060_120), or newer to remediate this vulnerability. Power 10
* IBM Power System S1022 (9105-22A) * IBM Power System S1024 (9105-42A) * IBM Power System S1022s (9105-22B) * IBM Power System S1014 (9105-41B) * IBM Power System L1022 (9786-22H) * IBM Power System L1024 (9786-42H) * IBM Power System E1050 (9043-MRX) * IBM Power System S1012 (9028-21B)
References (2)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-29121 Advisory
- https://www.ibm.com/support/pages/node/7244813 vendor-advisorypatchVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2025-29121 | Advisory | |
| https://www.ibm.com/support/pages/node/7244813 | vendor-advisorypatchVendor Advisory |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
Red Hat
No data
GitHub
No data