CVE-2026-19321

Summary

Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, and FW1060.00 through FW1060.80 is affected by a vulnerability in the host firmware. An attacker with service access to the service processor can supply a carefully crafted command that could leak the contents of hardware registers that should be inaccessible to the service processor. Successful exploitation could result in limited confidentiality or availability impacts to the affected host system.

Affected Software

VendorProductVersion RangeStatus
IBMPower Systems FirmwareFW1120.00affected
IBMPower Systems FirmwareFW1110.00 <= FW1110.30affected
IBMPower Systems FirmwareFW1060.00 <= FW1060.80affected

Weaknesses

  • CWE-190: CWE-190 Integer Overflow or Wraparound

References