Back

MEDIUM

IBM PowerVM Hypervisor denial of service

Published Sep 14, 2025

Description

IBM PowerVM Hypervisor FW950.00 through FW950.E0, FW1050.00 through FW1050.50, and FW1060.00 through FW1060.40 could allow a local privileged user to cause a denial of service by issuing a specially crafted IBM i hypervisor call that would disclose memory contents or consume excessive memory resources.

Affected products

Remediation

Vendor solution

Customers with the products below should install 950.E1(950_182)/950.F0(950_192) or newer to remediate this vulnerability. Power 9

* IBM Power System L922 (9008-22L) * IBM Power System S922 (9009-22A, 9009-22G) * IBM Power System H922 (9223-22H, 9223-22S) * IBM Power System S914 (9009-41A, 9009-41G) * IBM Power System S924 (9009-42A, 9009-42G) * IBM Power System H924 (9223-42H, 9223-42S) * IBM Power System E950 (9040-MR9) * IBM Power System E980 (9080-M9S)

Customers with the products below should install FW1050.51(1050_095)/FW1050.60(1050_090), FW1060.41(1060_120), or newer to remediate this vulnerability. Power 10

* IBM Power System E1080 (9080-HEX)  

Customers with the products below should install FW1050.51(1050_113)/FW1050.60(1050_108), FW1060.41(1060_120), or newer to remediate this vulnerability. Power 10

* IBM Power System S1022 (9105-22A) * IBM Power System S1024 (9105-42A) * IBM Power System S1022s (9105-22B) * IBM Power System S1014 (9105-41B) * IBM Power System L1022 (9786-22H) * IBM Power System L1024 (9786-42H) * IBM Power System E1050 (9043-MRX) * IBM Power System S1012 (9028-21B)

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner ibm
Published Sep 14, 2025
Updated Sep 15, 2025
Reserved Apr 15, 2025

CISA Vulnrichment

Updated Sep 15, 2025

NVD

Status Undergoing Analysis
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner ibm
Published Sep 14, 2025
Updated Sep 15, 2025

GitHub

No data