Ir para o conteúdo
CodeAuditAgent

CVE-2026-16661

IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the service processor mailbox interface. An attacker with authenticated service-level access to the FSP can exploit this vulnerability, allowing arbitrary code to be executed in the host firmware runtime, giving full control over the managed system, resulting in a confidentiality, integrity, and availability impact to the managed system.

Fraqueza

IBM PowerVM Hypervisor FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the service processor mailbox interface. An attacker with authenticated service-level access to the FSP can exploit this vulnerability, allowing arbitrary code to be executed in the host firmware runtime, giving full control over the managed system, resulting in a confidentiality, integrity, and availability impact to the managed system.

Produtos afetados

  • ibm power_system_s1122_\(9824-22a\)_firmware
  • ibm power_system_s1122_\(9824-22a\)
  • ibm power_system_s1124_\(9824-42a\)_firmware
  • ibm power_system_s1124_\(9824-42a\)
  • ibm power_system_s1122s_\(9824-22b\)_firmware
  • ibm power_system_s1122s_\(9824-22b\)
  • ibm power_system_s1114_\(9824-41b\)_firmware
  • ibm power_system_s1114_\(9824-41b\)

Referências

Encontre a falha antes de um atacante.

Entre com o GitHub e rode sua primeira auditoria em menos de um minuto. O plano gratuito não exige cartão de crédito.