PT-2026-78431 · Ibm · Ibm Powervm Hypervisor

CVE-2026-15961

·

Published

2026-08-19

·

Updated

2026-08-20

CVSS v3.1

6.0

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:H/I:N/A:H
Name of the Vulnerable Software and Affected Versions IBM PowerVM Hypervisor version FW1120.00 IBM PowerVM Hypervisor versions FW1110.00 through FW1110.30 IBM PowerVM Hypervisor versions FW1060.00 through FW1060.80
Description Improper control of format strings may allow a local attacker to obtain sensitive information or cause a denial of service. Format strings are templates used to format output, and improper control occurs when user-supplied input is evaluated as part of the format string, potentially leading to memory corruption or unauthorized data access.
Recommendations Update IBM PowerVM Hypervisor version FW1120.00 to the latest released Power System update. Update IBM PowerVM Hypervisor versions FW1110.00 through FW1110.30 to the latest released Power System update. Update IBM PowerVM Hypervisor versions FW1060.00 through FW1060.80 to the latest released Power System update.

Fix

DoS

Use of Externally-Controlled Format String

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-15961

Affected Products

Ibm Powervm Hypervisor