Denial of Service Vulnerability in IBM OPENBMC Firmware
CVE-2026-7254

5.3MEDIUM

Key Information:

Vendor

IBM

Status
Vendor
CVE Published:
27 May 2026

What is CVE-2026-7254?

The IBM OPENBMC firmware versions FW1110.00 through FW1110.11 are exposed to denial of service attacks conducted by unauthenticated network users. This vulnerability allows attackers to exploit the system without prior authentication, potentially leading to significant disruption in service availability. Users are strongly advised to implement appropriate security measures and apply available patches to mitigate this risk.

Affected Version(s)

OPENBMC FW1110.00

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.