Vulnerability in IBM PowerVM Hypervisor Productline Affecting Multiple Firmware Versions
CVE-2026-18821
7.5HIGH
What is CVE-2026-18821?
A flaw in the partition firmware of IBM PowerVM Hypervisor affects several firmware versions during network boot. This vulnerability enables an unauthenticated attacker on the same network to exploit the firmware by sending a malformed packet, allowing for arbitrary code execution within the partition. As a result, any subsequent processes or tasks operating on that partition may be compromised, although other partitions and the overall managed system remain unaffected. This poses significant risks to the confidentiality, integrity, and availability of the data processed within the compromised partition.
Affected Version(s)
PowerVM Hypervisor FW1120.00
PowerVM Hypervisor FW1110.00
PowerVM Hypervisor FW1060.00