IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the FSP management network protocol. An attacker with authenticated HMC administrator access can execute arbitrary code on the service processor, giving full control over the managed system, resulting in a confidentiality, integrity, and availability impact.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7283895 |
|
History
Tue, 25 Aug 2026 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Ibm power System E1080 \(9080-hex\)
Ibm power System E1080 \(9080-hex\) Firmware Ibm power System E1180 \(9080-heu\) Ibm power System E1180 \(9080-heu\) Firmware Ibm power System E950 \(9040-mr9\) Ibm power System E950 \(9040-mr9\) Firmware Ibm power System E980 \(9080-m9s\) Ibm power System E980 \(9080-m9s\) Firmware Ibm power System H922 \(9223-22s\) Ibm power System H922 \(9223-22s\) Firmware Ibm power System H924 \(9223-42s\) Ibm power System H924 \(9223-42s\) Firmware Ibm power System S914 \(9009-41g\) Ibm power System S914 \(9009-41g\) Firmware Ibm power System S922 \(9009-22g\) Ibm power System S922 \(9009-22g\) Firmware Ibm power System S924 \(9009-42g\) Ibm power System S924 \(9009-42g\) Firmware |
|
| CPEs | cpe:2.3:h:ibm:power_system_e1080_\(9080-hex\):-:*:*:*:*:*:*:* cpe:2.3:h:ibm:power_system_e1180_\(9080-heu\):-:*:*:*:*:*:*:* cpe:2.3:h:ibm:power_system_e950_\(9040-mr9\):-:*:*:*:*:*:*:* cpe:2.3:h:ibm:power_system_e980_\(9080-m9s\):-:*:*:*:*:*:*:* cpe:2.3:h:ibm:power_system_h922_\(9223-22s\):-:*:*:*:*:*:*:* cpe:2.3:h:ibm:power_system_h924_\(9223-42s\):-:*:*:*:*:*:*:* cpe:2.3:h:ibm:power_system_s914_\(9009-41g\):-:*:*:*:*:*:*:* cpe:2.3:h:ibm:power_system_s922_\(9009-22g\):-:*:*:*:*:*:*:* cpe:2.3:h:ibm:power_system_s924_\(9009-42g\):-:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_system_e1080_\(9080-hex\)_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_system_e1180_\(9080-heu\)_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_system_e1180_\(9080-heu\)_firmware:fw1120.00:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_system_e950_\(9040-mr9\)_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_system_e980_\(9080-m9s\)_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_system_h922_\(9223-22s\)_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_system_h924_\(9223-42s\)_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_system_s914_\(9009-41g\)_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_system_s922_\(9009-22g\)_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_system_s924_\(9009-42g\)_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm power System E1080 \(9080-hex\)
Ibm power System E1080 \(9080-hex\) Firmware Ibm power System E1180 \(9080-heu\) Ibm power System E1180 \(9080-heu\) Firmware Ibm power System E950 \(9040-mr9\) Ibm power System E950 \(9040-mr9\) Firmware Ibm power System E980 \(9080-m9s\) Ibm power System E980 \(9080-m9s\) Firmware Ibm power System H922 \(9223-22s\) Ibm power System H922 \(9223-22s\) Firmware Ibm power System H924 \(9223-42s\) Ibm power System H924 \(9223-42s\) Firmware Ibm power System S914 \(9009-41g\) Ibm power System S914 \(9009-41g\) Firmware Ibm power System S922 \(9009-22g\) Ibm power System S922 \(9009-22g\) Firmware Ibm power System S924 \(9009-42g\) Ibm power System S924 \(9009-42g\) Firmware |
Wed, 19 Aug 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 19 Aug 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Server Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the FSP management network protocol. An attacker with authenticated HMC administrator access can execute arbitrary code on the service processor, giving full control over the managed system, resulting in a confidentiality, integrity, and availability impact. | IBM Power Systems Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the FSP management network protocol. An attacker with authenticated HMC administrator access can execute arbitrary code on the service processor, giving full control over the managed system, resulting in a confidentiality, integrity, and availability impact. |
Wed, 19 Aug 2026 19:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Server Firmware FW1120.00, FW1110.00 through FW1110.30, FW1060.00 through FW1060.80, and FW950.00 through FW950.H2 is affected by a vulnerability in the FSP management network protocol. An attacker with authenticated HMC administrator access can execute arbitrary code on the service processor, giving full control over the managed system, resulting in a confidentiality, integrity, and availability impact. | |
| Title | Power System Buffer Overflow | |
| First Time appeared |
Ibm
Ibm power Systems Firmware |
|
| Weaknesses | CWE-121 | |
| CPEs | cpe:2.3:o:ibm:power_systems_firmware:fw1060.00:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_systems_firmware:fw1060.80:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_systems_firmware:fw1110.00:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_systems_firmware:fw1110.30:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_systems_firmware:fw1120.00:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_systems_firmware:fw950.00:*:*:*:*:*:*:* cpe:2.3:o:ibm:power_systems_firmware:fw950.h2:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm power Systems Firmware |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published: 2026-08-19T18:49:27.791Z
Updated: 2026-08-22T03:56:07.011Z
Reserved: 2026-07-24T02:37:40.718Z
Link: CVE-2026-16832
Updated: 2026-08-19T19:21:47.504Z
Status : Analyzed
Published: 2026-08-19T19:17:10.557
Modified: 2026-08-25T18:04:01.390
Link: CVE-2026-16832
No data.