IBM PowerVM Hypervisor Vulnerability in Host Firmware Configuration
CVE-2026-18871
7.3HIGH
What is CVE-2026-18871?
IBM PowerVM Hypervisor is susceptible to a vulnerability in its host firmware configuration parsing mechanism. An attacker with authenticated service-level access can exploit this flaw by writing crafted configuration data. This may lead to a crash in the boot stack of the host firmware and potential memory corruption during system initialization, which can significantly affect the integrity and availability of the managed system. Quick action is essential to mitigate these risks.
Affected Version(s)
PowerVM Hypervisor FW1120.00
PowerVM Hypervisor FW1110.00
PowerVM Hypervisor FW1060.00